OnePlug CMS Multiple SQL Injection Vulnerabilities

An exploit is not required.

The following proof-of-concept URIs are available:

http://www.example.com/press/details.asp?Press_Release_ID=[SQL]
http://www.example.com/services/details.asp?Service_ID=[SQL]
http://www.example.com/products/details.asp?Product_ID=[SQL]


 

Privacy Statement
Copyright 2010, SecurityFocus