BugTraq
Back to list
|
Post reply
OneOrZero Helpdesk V1.6.4.1 susceptible to SQL injection and XSS
Aug 15 2006 10:57AM
vampire_chiristof yahoo com
vendor:
http://www.oneorzero.com/
vuln :
http://[host]/supporter/index.php?t=tupd&id=[SQL]
http://[host]/supporter/index.php?t=tupd&id=[XSS]
Author : Vampire
vampire_chiristof (at) yahoo (dot) com [email concealed]
Homepage : Www.HackerZ.iR
Www.H4ckerZ.Com
Iran HackerZ Security Team
[ reply ]
Privacy Statement
Copyright 2010, SecurityFocus
http://www.oneorzero.com/
vuln :
http://[host]/supporter/index.php?t=tupd&id=[SQL]
http://[host]/supporter/index.php?t=tupd&id=[XSS]
Author : Vampire
vampire_chiristof (at) yahoo (dot) com [email concealed]
Homepage : Www.HackerZ.iR
Www.H4ckerZ.Com
Iran HackerZ Security Team
[ reply ]