Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:11835
HistoryMar 17, 2006 - 12:00 a.m.

Portal 1.4.7 by Dragoran

2006-03-1700:00:00
vulners.com
7

Portal 1.4.7 by Dragoran
SQL injection в параметре site

пример уязвимости:
http://targethost.com/index.php?act=portal&site=1%20union%20select%20null,null,null,null,null,null/*

/dev/0id UKR Security Team