The OpenNET Project
 
Search (keywords):  SOFT ARTICLES TIPS & TRICKS SECURITY
LINKS NEWS MAN DOCUMENTATION


Tamber Forum <= 1.9.13 Multiple SQL Injection Vulnerabilities


<< Previous INDEX Search src / Print Next >>
Date: 25 May 2006 07:04:46 -0000
From: [email protected]
To: [email protected]
Subject: Tamber Forum <= 1.9.13 Multiple SQL Injection Vulnerabilities
X-Virus-Scanned: antivirus-gw at tyumen.ru

ENGLISH

# Title  :   Tamber Forum <= 1.9.13 Multiple SQL Injection Vulnerabilities

# Author :   ajann

# Exploit;

SQL INJECT&#304;ON--------------------------------------------------------

###http://&#091;target]/[path]/show_forum.asp?frm_id=55'SQL TEXT

###http://&#091;target]/[path]/forum_search.asp SEARCH FOR:SQL TEXT

###http://&#091;target]/[path]/admin/index.asp

Email address: 	SQL TEXT
Password: SQLTEXT

###http://&#091;target]/[path]/browse_forum_cat.asp?frm_cat_id=1 SQL TEXT

###post_message.asp

Message Subject: SQL TEXT

Message Text: SQL TEXT

.
..
.....


# ajann,Turkey


TURKISH

# Basl&#305;k          :   Tamber Forum <= 1.9.13 Multiple SQL Injection Vulnerabilities
# AГ&#305;&#287;&#305; Bulan     :   ajann
# AГ&#305;k bulunan dosyalar;

###http://&#091;target]/[path]/show_forum.asp?frm_id=55'SQL SORGUNUZ

###http://&#091;target]/[path]/forum_search.asp SEARCH FOR:SQL SORGUNUZ

###http://&#091;target]/[path]/admin/index.asp

Email address: 	SORGUNUZ
Password: SORGUNUZ

###http://&#091;target]/[path]/browse_forum_cat.asp?frm_cat_id=1 SQL SORGUNUZ

###post_message.asp

Message Subject: SORGUNUZ

Message Text: SORGUNUZ

.
..
.....

Ac&#305;klama: 
K&#305;sacas&#305; bЭtЭn dosyalarda : ) bulunan filtrelem eksikli&#287;i nedeniyle dbden bilgi cekilebilmektedir.

# ajann,Turkiye


<< Previous INDEX Search src / Print Next >>



Партнёры:
PostgresPro
Inferno Solutions
Hosting by Hoster.ru
Хостинг:

Закладки на сайте
Проследить за страницей
Created 1996-2025 by Maxim Chirkov
Добавить, Поддержать, Вебмастеру