Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Aspee Ziyaretçi Defteri Multiple SQL Injection Vulnerabilities

Attackers can exploit these issues via a web client.

The following proofs of concept are available:

HTTP GET request:

1. Go to: http://www.example.com/[path to script]/admin.asp

2. Type 'or ' in the username and password input boxes.

HTTP POST request:







 

Privacy Statement
Copyright 2009, SecurityFocus