about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , webSPELL Multiple SQL Injection Vulnerabilities


Title webSPELL Multiple SQL Injection Vulnerabilities
Published 2009-01-03-12:00AM
Updated 2009-01-06-04:32PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  h0yt3r, StAkeR
Vulnerable  webSPELL webSPELL 4.1.2
webSPELL webSPELL 4.0
Not Vulnerable  
Code  Attackers can exploit these issues via a browser.The following example URIs are available:http://www.example.com/index.php?site=forum_topic&topic=[ID]&edit=true&id=1/**/%27/**/OR/**/1=1/*
http://www.example.com/index.php?site=forum_topic&topic=1&edit=true&id=1/**/%27/**/OR/**/1=1/*
The following example 'ws_auth' cookie value is available:'1:'or/**/1=1/**/limit/**/0,1#
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 00:51:07 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
avg8 Www vidi s san wwwboard nana 200 /compo www.clebri vuln/explo ip board 2 ip board 2 indian gir SMF 1.0.8. www.clean2 Mac OS t297t news for c tamil.sex. maxcpm.inf sexcy phot www.0543vo tv.djkko.c bokile.com news for c www.hhz518 mambo Remo ip board 2 Aishwarya gratis cer ip board 2 ip board 2 MF 1.3 phone Amir.Khan ip board 2 php fusion ip board 2 sexe18 Sexwallpdp www.alldat puss fukin www.zhuany 14894.pqpq Gambarporn Betha sendmail weixing99. www.mqdm.n ip board 2 news for c www.sex300