Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:12552
HistoryMay 06, 2006 - 12:00 a.m.

SQL-Injection in evoArticles

2006-05-0600:00:00
vulners.com
10

Advisory: SQL-Injection in evoArticles

Home Page: http://evo-dev.com/

Уязвимость/Vulnerability:
SQL-injection

Уязвимый скрипт/Vulnerable script: index.php

http://www.target.com/index.php?do=cat&total=19&cid=37&sort=date&order=desc'&page=2

http://www.target.com/index.php?do=cat&total=19&cid=37&sort=date'&order=desc&page=2

http://www.target.com/index.php?do=cat&cid=22'

Открыт для просмотра файл phpinfo:

www.target.com/phpinfo.php


Cyber Lords Team
www.cyberlords.net