about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PHPFreeNews SearchResults.PHP Multiple SQL Injection Vulnerabilities


Title PHPFreeNews SearchResults.PHP Multiple SQL Injection Vulnerabilities
Published 2005-08-17-12:00AM
Updated 2005-08-17-08:56PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  h4cky <www.h4cky0u.org> is credited with the discovery of these vulnerabilities.
Vulnerable  PHPFreeNews PHPFreeNews 1.40
Not Vulnerable  
Code   No exploit is required.

The following proof of concept URI are available:
http://www.example.com/phpfn/SearchResults.php?Match='&NewsMode=1&SearchNews=Search&CatID=0
http://www.example.com/phpfn/SearchResults.php?Match=1&NewsMode=1&SearchNews=Search&CatID='
http://www.example.com/phpfn/SearchResults.php?Match=%27&NewsMode=1&SearchNews=Search&CatID=0
http://www.example.com/phpfn/SearchResults.php?Match=1&NewsMode=1&SearchNews=Search&CatID=%27
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 04 Dec 2008 16:51:12 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
root windo blowjop guaranteed mtt Gym class admentor netid BNC 1.6 Trt sex gay ph shopcart v Jody srvloc Manager_Ac verygame Www.zzl.c6 result for WWW.south desibaba bbwsex.tv www.yotoub Www.Desiba modernbill www.j8a.cn Narutoporn Gambar cin Www.sex.co geirl sexy www.sexsyg thubm18.co hard korse Ayeshataki asredas.co p.../help/ liseban Calendar S Indiansex. boysfuking Free movie exploit Mi SEXy irani Www.xnx.co www.dtwl8. wawe code excut Free sxey Sabdrimer Free movie Melange Ch global ann