Arcadwy Arcade Script 'user' Cookie Parameter SQL Injection Vulnerability

An attacker can exploit this issue via a browser.

The following example data is available:

javascript:document.cookie = "user=1,' or ' 1=1--; path=/";


 

Privacy Statement
Copyright 2010, SecurityFocus