BugTraq
Re: Vbulletin 3.7.0 Gold >> Sql injection on faq.php May 21 2008 09:16AM
martin meredith vbulletin com (1 replies)
This is invalid. the variable q is taken, split into words, and then each word is escaped for usage within the DB.

Once again, this is invalid

[ reply ]
Re: Vbulletin 3.7.0 Gold >> Sql injection on faq.php May 21 2008 06:21PM
Matias Blanco (blue corest com)


 

Privacy Statement
Copyright 2010, SecurityFocus