Bugtraq mailing list archives

Re: BUGTRAQ:20060611 ThWboard 3.0 <= SQL Injection


From: "Steven M. Christey" <coley () mitre org>
Date: Mon, 12 Jun 2006 22:30:38 -0400 (EDT)


Exploit: http://www.example.com/showtopic.php?threadid=1&pagenum=[SQL]

The same program and parameter were already reported to Bugtraq by Qex
on April 19 for version 3 beta 2.84 (CVE-2006-1926).

- Steve


Current thread: