BugTraq
Back to list
|
Post reply
RaceEventManagement <--v0.7.6 SQL injection & XSS
May 20 2006 10:20AM
Mster-X hotmail com
============================
Discovery By: Mr-X
Site: www.alshmokh.com
E-mail: Mster-X (at) hotmail (dot) com [email concealed]
===========================
Example:
/nennung.php?pid=[SQL]
/nennung.php?pid=[XSS]
[ reply ]
Privacy Statement
Copyright 2010, SecurityFocus
Discovery By: Mr-X
Site: www.alshmokh.com
E-mail: Mster-X (at) hotmail (dot) com [email concealed]
===========================
Example:
/nennung.php?pid=[SQL]
/nennung.php?pid=[XSS]
[ reply ]