Exploit IPBProArcade 2.5.2 - 'GameID' SQL Injection

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
26397
Проверка EDB
  1. Пройдено
Автор
ALMASTER
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2005-4702
Дата публикации
2005-10-26
Код:
source: https://www.securityfocus.com/bid/15205/info

A remote SQL injection vulnerability reportedly affects ipbProArcade.

The problem affects the 'gameid' parameter.

An attacker may leverage this issue to manipulate SQL query strings and potentially carry out arbitrary database queries. This may facilitate the disclosure or corruption of sensitive database information. 

http://www.example.com/forums/index.php?act=Arcade&module=favorites&gameid=|aLMaSTeR
 
Источник
www.exploit-db.com

Похожие темы