about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PHP-Nuke SQL Injection Protection Bypass and Multiple SQL Injection Vulnerabilities


Title PHP-Nuke SQL Injection Protection Bypass and Multiple SQL Injection Vulnerabilities
Published 2007-04-17-12:00AM
Updated 2007-04-17-06:31PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Aleksandar is credited with the discovery of these vulnerabilities.
Vulnerable  PHPNuke PHPNuke 8.0 .3.3b
Not Vulnerable  
Code   Attackers can use a browser to exploit these issues.

The following example URI strings demonstrate bypassing the SQL-injection-protection feature:

http://www.example.com/nuke/?%2f*

http://www.example.com/html80/?%2f**/UNION%2f**/SELECT
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Wed, 16 Dec 2009 01:17:18 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
SXE News Searc 4178477 Kerala sex mambo Remo Kerala sex Group sex ww.movx.co fils acirc Xtrainches 53wo.com Mobilethem /class.cs_ J...0][aut Group sex WWW.nb288. video boke XLXX www.slin8. Sex photor CMS is Fre Group sex naughty Tampilkan SEX.MOVES. ruiying.id mambo Remo WWW.INDIA free sexx WWW.INDIA Crack Data GET ...0][ i...p%3Fop Winmail Dog style mysl nudeimages Bandung be www.transm Tagger LE. nag sex 777 Crack Data www.free 4 cmd.gif sxy+video www.uugog. Crack Data samba 2.2. free antis