From:Scarlet Pimpernel <kishfellow_(at)_yahoo.com>
Date:27 февраля 2007 г.
Subject:[Full-disclosure] Multiple SQL Injection bugs in TCS website

Hello list,

The website of TCS (Tata Consultancy Services) is prone to multiple SQL injection bugs. I already sent them an email back in December 2006. They have not fixed the bug just yet, so Iam going to disclose the details here.


The scripts are prone to multiple XSS, and SQL bugs. A sample screenshot for a potential SQL injection is given in my blog.

Cheers :)

Full-Disclosure - We believe in it !

Remember there is alwayz someone who knows more than us out there

