Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Simple Machines Forum multiple sql injection flaws with exploit code. Oct 20 2007 12:33AM
th3 r00k spammenot gmail com
SMF is a very hardened php application. If anyone wants an example of some interesting PHP security SMF is a good place to look. Even after being able to injection SQL I had to take another step and bypass some difficult filters found in the db_query() function. Ultimately i was able to do so....

[ more ]  





 

Privacy Statement
Copyright 2008, SecurityFocus