Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PHPCoin Multiple SQL Injection Vulnerabilities

No exploit is required.

The following proof of concepts are available:
http://www.example.com/index.php?title=Special%3aSearch&search=(SQL_INJECTION
http://www.example.com/login.php?w=user&o=login&phpcoinsessid=SQL_INJECTION'
http://www.example.com/mod.php?mod=siteinfo&id=SQL_INJECTION'&phpcoinsessid=8d4706204348394afece6b64db3d9b95
http://www.example.com/mod.php?mod=pages&mode=list&dtopic_id=SQL_INJECTION'&phpcoinsessid=fa7905a749dbdc698838930de0f99f4b
http://www.example.com/mod.php?mod=pages&mode=list&dcat_id=SQL_INJECTION'&phpcoinsessid=fa7905a749dbdc698838930de0f99f4b







 

Privacy Statement
Copyright 2008, SecurityFocus