SQL Injection In Script VBZooM V1.12
Date: 29 Jun 2007 07:36:10 -0000
From: [email protected]
To: [email protected]
Subject: SQL Injection In Script VBZooM V1.12
X-Virus-Scanned: antivirus-gw at tyumen.ru
Discovered By: Hasadya Raed
Contact : [email protected]
Israel
---------------------------
Script : VBZooM V1.12
VBZooM V1.12 "reply.php" SQL Injection
Dork : POWERED BY VBZooM V1.12
---------------------------
B.File : reply.php
---------------------------
Exploit :
http://www.victim.com/Path_Script/sub-join.php?UserID=[SQL Injection]