about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Zoph Cross-Site Scripting and SQL Injection Vulnerabilities


Title Zoph Cross-Site Scripting and SQL Injection Vulnerabilities
Published 2008-07-07-12:00AM
Updated 2009-07-02-07:49PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Julian Rodriguez
Vulnerable  Zoph Zoph 0.7.2.1
Not Vulnerable  
Code  An attacker can exploit these issues via a browser. To exploit a cross-site scripting vulnerability, the attacker must entice a victim user to follow a malicious URI.The following example URI is available:http://www.example.com/demo/search.php?_action=search&_off=[EvilScript]The following login credentials are reported to trigger this issue:username: '--
password: '--
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 07 Nov 2009 17:14:55 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.hujian www.web002 Crack Data www.avizoo news for c www.wuhanu Menu vidiossex tsunadesex www.bonbon tsunadesex Vedio www.hangzh unlock beb mambo Remo p.../cmd.g slet 200 /compo 200 /compo news for c boysssex news+for+c all cartoo www.llddc. news for C Videosexo news for c sex video. hotest ime mambo Remo hot sexy n mambo Remo gfghh modules/vw boonex.htm tamilactra mambo Remo iiculowacy Nayanthara news for c SSH-1.99 CMS is Fre www.xxwang cat /home/ vbulletin port+21+1. Search: ip board 2 mambo Remo prithi sin