Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:11853
HistoryMar 19, 2006 - 12:00 a.m.

Sql-injection in RalfChat

2006-03-1900:00:00
vulners.com
6

Advisory: Sql-injection in RalfChat

Home Page: http://www.ralfchat.de

Уязвимость/Vulnerability:
Sql-injection, Cross Site Scripting

Уязвимый скрипт/Vulnerable script: chat2.cgi

http://chat.shaonline.ru/cgi-bin/chat2.cgi?action=userinfo&infoabout=Fear'

http://chat.shaonline.ru/cgi-bin/chat2.cgi?action=userinfo&infoabout=Fear"><script>alert()</script><"


Cyber Lords Team
www.cyberlords.net