Plexum Multiple SQL Injection Vulnerabilities

These issues can be exploited using a web client.

The following proof-of-concept URIs are available:

http://www.example.com/plexum.php?section=webstats&page=hits&startpos=15&maxrec=457&pagesize=[SQL]

http://www.example.com/plexum.php?section=webstats&page=hits&startpos=450&maxrec=[SQL]

http://www.example.com/plexum.php?section=webstats&page=hits&startpos=[SQL]


 

Privacy Statement
Copyright 2010, SecurityFocus