about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Nuked Klan Multiple SQL Injection Vulnerabilities


Title Nuked Klan Multiple SQL Injection Vulnerabilities
Published 2005-10-24-12:00AM
Updated 2005-10-24-06:59PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  papipsycho@hotmail.com is credited with the discovery of this vulnerability.
Vulnerable  NukedKlan NukedKlan 1.7
Not Vulnerable  
Code   No exploit is required.

URI samples have been provided:
http://www.example.com/index.php?file=Forum&page=viewtopic&forum_id=[FORUM_ID]' OR id LIKE '%%' /*&thread_id=[THREAD_ID]' AND auteur_id LIKE '%%' /*
http://www.example.com/index.php?file=Forum&page=viewtopic&forum_id=1' OR id LIKE '%%'&thread_id=1' AND auteur_id LIKE '%%' /*
http://www.example.com/nk/index.php?file=Forum&page=viewtopic&forum_id='[SQL]&thread_id='[SQL]
http://www.example.com/nk/index.php?file=Links&op=description&link_id='[SQL]
http://www.example.com/nk/index.php?file=Sections&op=article&artid='[SQL]
http://www.example.com/nk/index.php?file=Download&op=description&dl_id='[SQL]

Sample exploit code is also available: /data/vulnerabilities/exploits/nk_1.7.exploit.pl
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 04 Dec 2008 21:34:01 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
gay baer free sex m Red Hat 8. egyptsex red+tube mambo Remo All sex.co Joomla Com www.xxx.co www.xxx.co www.lanqiu Joomla Com Linux 6. www.xxx.co americanse BROOK NORR mambo Remo Www.Sex wa Wwwporno.c search/exp .126 OpenSSH Bu www.trish www.df5.co www.3pic. live sexx fun sexy v azraels Sexyman /vwar/back free fucki Wwwporno.c ext Searching loana news for c top teen zend hash www.sexy c Worldsex.c arabicsix. SQuery t345t lno gypsysexy www.lele20 front t646t severina+v news+for+C