Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Audins Audiens Multiple Input Validation Vulnerabilities

To exploit the security-bypass issue:

An attacker can exploit this issue via a web client.

The following proof-of-concept URI is available:

http://www.example.com/[path]/unistall.php?cnf=disinstalla&status=on

To exploit the SQL-injection issue:

An attacker can exploit this issue via a web client.

The following proof-of-concept URI is available:

http://www.example.com/[path]/system/index.php with PHPSESSID = '

To exploit the cross-site scripting issue:

An attacker can exploit this issue by enticing an unsuspecting user into following a malicious URI.

A sample URI has been provided:







 

Privacy Statement
Copyright 2009, SecurityFocus