info
discussion
exploit
solution
references
PHPSurveyor SID Parameter SQL Injection Vulnerability
An exploit is not required.
Privacy Statement
Copyright 2010, SecurityFocus