Revize CMS Query_results.JSP SQL Injection Vulnerability

No exploit is required.

Example URI have been provided:

http://www.example.com/revize/debug/query_results.jsp?webspace=REVIZE&query=select%20*%20from%20pbpublic.rSubjects

http://www.example.com/revize/debug/query_results.jsp?query=select%20*%20from%20pbpublic.rSubjects


 

Privacy Statement
Copyright 2010, SecurityFocus