info
discussion
exploit
solution
references
Pre Multi-Vendor E-Commerce Solution 'detail.php' SQL Injection Vulnerability
Attackers can use a browser to exploit this issue.
The following example URI is available:
http://www.example.com/detail.php?prodid=[SQLi]
Privacy Statement
Copyright 2010, SecurityFocus