about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PHPFreeNews SearchResults.PHP Multiple SQL Injection Vulnerabilities


Title PHPFreeNews SearchResults.PHP Multiple SQL Injection Vulnerabilities
Published 2005-08-17-12:00AM
Updated 2005-08-17-08:56PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  h4cky <www.h4cky0u.org> is credited with the discovery of these vulnerabilities.
Vulnerable  PHPFreeNews PHPFreeNews 1.40
Not Vulnerable  
Code   No exploit is required.

The following proof of concept URI are available:
http://www.example.com/phpfn/SearchResults.php?Match='&NewsMode=1&SearchNews=Search&CatID=0
http://www.example.com/phpfn/SearchResults.php?Match=1&NewsMode=1&SearchNews=Search&CatID='
http://www.example.com/phpfn/SearchResults.php?Match=%27&NewsMode=1&SearchNews=Search&CatID=0
http://www.example.com/phpfn/SearchResults.php?Match=1&NewsMode=1&SearchNews=Search&CatID=%27
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 21 Nov 2009 14:53:22 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Free sexi Buffer ove cartoon Iwant indi angel anne news for c PHP Multip www.nameth iiwyxolezy IMAGENES D all cartoo 2001.315 carschina. http//www. 698/ www.shangh vBulletin Brestphoto +MySQL+4.1 www.taobao http:/www. mambo Remo waptrickse MS07-021 www.ddbase Bollywoods Www.Sexgir qingdaohan lesbin mambo Remo WWW.Sexmov Ro89sex /search/ex Black id 2 mambo hack indianass sextv1.pl SEX VEDUO index.php? nayan th www.southi IMAGENES D WWWGGOL+SE www.southi aishriya WWW.SEXY popay e ol pornoxxxx Www.dudhwa Bigboobr