Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:12033
HistoryMar 30, 2006 - 12:00 a.m.

PhxContacts <= 0.93.1 beta Multiple SQL injection & xss

2006-03-3000:00:00
vulners.com
6

[+]PhxContacts
[+]website of software:http://www.phoetux.net/
[+]founded by Morocco Security Team
[+]special 10x to:all friends ww.lezr.com & www.cim-team.org
[+]xss
[+]http://[target]/login.php?m=[xss]
[+]SQL
[+]http://[target]/carnet.php?view_cat=&all_lines=true&motclef=[sql]
[+]http://[target]carnet.php?view_cat=2&nbr_line_view=[sql]
[+]http://[target]/contact_view.php?id_contact=[sql]
[+]have nice day