about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Zoph Cross-Site Scripting and SQL Injection Vulnerabilities


Title Zoph Cross-Site Scripting and SQL Injection Vulnerabilities
Published 2008-07-07-12:00AM
Updated 2009-07-02-07:49PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Julian Rodriguez
Vulnerable  Zoph Zoph 0.7.2.1
Not Vulnerable  
Code  An attacker can exploit these issues via a browser. To exploit a cross-site scripting vulnerability, the attacker must entice a victim user to follow a malicious URI.The following example URI is available:http://www.example.com/demo/search.php?_action=search&_off=[EvilScript]The following login credentials are reported to trigger this issue:username: '--
password: '--
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Mon, 09 Nov 2009 21:41:14 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
MS8-009 phpMyAdmin 200 /compo meena news for C pinkxxx.co Sexemage mambo Remo Mensexanim news for c 200 /compo Mallu girl mambo Remo www.iran t php-nuke 2 ip board 2 eggdrop a...allery mambo Remo Searching amer dib ip board 2 all cartoo com_rss.ht WWW.nayant 200 /compo nude pictu Molika she hot aishwa us5 CMS is Fre mambo Remo votw CMS is Fre login bypa 200 /compo Hotbaby Pakisthans news for c mambo Remo www.baisem Pakisthans www.kk2099 Free sex p Anu win xp sp2 C....kr/id news for c mambo Remo WWW.SEX SE