|
20/20 DataShed Multiple SQL Injection Vulnerabilities
An attacker can exploit this issue via a web client. The following proof-of-concept URIs are available: http://www.example.com/f-email.asp?strPeopleID=1&itemID='[sql] http://www.example.com/listings.asp?peopleID='[sql] http://www.example.com/listings.asp?sort_order='[sql] |
|
Privacy Statement |