about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , All Enthusiast Photopost PHP Pro SQL Injection Vulnerability


Title All Enthusiast Photopost PHP Pro SQL Injection Vulnerability
Published 2004-02-03-12:00AM
Updated 2004-02-03-04:15PM
Class Input Validation Error
CVE   CAN-2004-0239 CAN-2004-0250
Remote  Yes
Local  No
Credit  The disclosure of this issue has been credited to G00db0y from Zone-h Security Labs <zetalabs@zone-h.org>.
Vulnerable  All Enthusiast Inc Photopost PHP Pro 4.6
All Enthusiast Inc Photopost PHP Pro 4.1
All Enthusiast Inc Photopost PHP Pro 4.0
All Enthusiast Inc Photopost PHP Pro 3.3
All Enthusiast Inc Photopost PHP Pro 3.2
All Enthusiast Inc Photopost PHP Pro 3.1
Not Vulnerable  
Code   No exploit is required to exploit this issue.

The following proof of concept has been provided:
http://www.example.com/directory/showphoto.php?photo=[query]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 10:14:49 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.whiteg Sekxy lopz maxcpm.inf calendar.p misc.php www.1000oa prity xp%20bypas mambo Remo www.trisha Que exploit.c Sexy dream Que quote www.fzcnn. C...Fcopyr c...33.9.1 phpbb admi www.trisha nakedpictu maxcpm.inf indian sex j...2Fid.t local root www.1000bj php-nuke 2 rani mukar www.dm007. page.php?x www.gzlife movx.com tamil+nude nellys_cak mambo Remo www.qingda Crack+Data squirre www.bigcoc Black lesb wave WWW23SEX indianactr hexun.com/ analfuck.c Arab sex.3 t148t qust.net powered by Sex.Pic