info
discussion
exploit
solution
references
Instant Photo Gallery Multiple SQL Injection Vulnerabilities
No exploit is required.
Sample URI have been provided:
http://www.example.com/portfolio.php?cat_id=[SQL]
http://www.example.com/content.php?cid=[SQL]
Privacy Statement
Copyright 2010, SecurityFocus