Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Re: Vbulletin 3.7.0 Gold >> Sql injection on faq.php May 21 2008 09:16AM
martin meredith vbulletin com (1 replies)
This is invalid. the variable q is taken, split into words, and then each word is escaped for usage within the DB.

Once again, this is invalid

[ reply ]
Re: Vbulletin 3.7.0 Gold >> Sql injection on faq.php May 21 2008 06:21PM
Matias Blanco (blue corest com)







 

Privacy Statement
Copyright 2009, SecurityFocus