Exploit MyBloggie 2.1.x - 'index.php' Multiple SQL Injections

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
30111
Проверка EDB
  1. Пройдено
Автор
[email protected]
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2007-3003
Дата публикации
2007-05-31
Код:
source: https://www.securityfocus.com/bid/24249/info

myBloggie is prone to an SQL-injection vulnerability.

An attacker can exploit this issue by manipulating the SQL query logic to carry out unauthorized actions on the underlying database.

This issue affects myBloggie 2.1.6 and earlier.

http://www.example.com/apppath/index.php?mode=viewuser&cat_id='
http://www.example.com/apppath/index.php?mode=viewuser&month_no=4&year="
 
Источник
www.exploit-db.com

Похожие темы