AlstraSoft Affiliate Network Pro Multiple Input Validation Vulnerabilities

To exploit the cross-site scripting issues, an attacker must entice an unsuspecting victim into following a malicious URI. The attacker can use a browser to exploit the SQL-injection issue.

The following proofs of concept have been provided:


 

Privacy Statement
Copyright 2010, SecurityFocus