BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re:Re: SQL Injection Vuln In osCommerce 2.2-MS1 Dec 16 2003 10:45PM
JeiAr (security gulftech org)
In-Reply-To: <20031215061530.20789.qmail (at) sf-www2-symnsj.securityfocus (dot) com [email concealed]>

This vulnerability also exists in the account_edit_process.php and pretty much anywhere else you can input data into the country field by altering the form.

JeiAr

>X-Mailer: MIME-tools 5.411 (Entity 5.404)

>From: Je...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus