about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , phpMyQuote Index.PHP SQL Injection and Cross-Site Scripting Vulnerabilities


Title phpMyQuote Index.PHP SQL Injection and Cross-Site Scripting Vulnerabilities
Published 2007-09-10-12:00AM
Updated 2007-09-10-10:21PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Yollubunlar.org is credited with the discovery of these vulnerabilities.
Vulnerable  phpMyQuote phpMyQuote 0.20
Not Vulnerable  
Code  To exploit a cross-site scripting vulnerability, an attacker entices an unsuspecting victim to follow a malicious URI. The attacker can exploit SQL-injection vulnerabilities through a browser.The following proof-of-concept URIs are available:http://example.com/script_path/index.php?action=edit&id=[Sql injection]
http://example.com/script_path/index.php?action=edit&id=[XSS]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 22 Nov 2008 21:50:50 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.sex.ch casting all cartoo sexy iran Www.Thrish Sexy girls Ayu azhari CMS is Fre Realitykin reshma ker port 50 www.wapfor desipapa c PHP click CMSimple suse explo xnxx 89 co Sabdrimer picture pl Realitykin Web Server sxsey Hot babbes t414t Videoseks hugewomen. show file Www.sahara all cartoo 2.6.19 r00 CMS is Fre t414t WINDOWS Sabdrimer bangbro.co Nurfed animal sex skin/zero_ www.700xxx Vidio ewea Desperados phpbb xs t914t image exif NetBsd t914t Playstatio 7.7 200 /compo dnsmasq 2.