Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:21237
HistoryJan 28, 2009 - 12:00 a.m.

Lootan(kedor) Sql Injection vulnerability

2009-01-2800:00:00
vulners.com
21

Product : Lootan System
vendor : www.kedor.cn
vulnerable versions : RC1 & prior

example :
http://example/ly/login.asp?username=[SQL Command]