Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Thorsten Korner 123tkShop SQL Injection Vulnerability

A vulnerability has been reported for 123tkShop. Reportedly, 123tkShop suffers from a SQL injection vulnerability. User supplied data is used to construct SQL statements, and special characters such as ''' and '"' are not properly escaped. An attacker may be able to pass malicious data to the system which modifies SQL queries.







 

Privacy Statement
Copyright 2009, SecurityFocus