Bugtraq mailing list archives
Aceboard forum, SQL injection
From: karmaguedon () hotmail com
Date: 3 Aug 2007 12:13:39 -0000
Aceboard is prone to a sql injection vulnerability because it fails to properly sanitize user-supplied input into Recherche.php form. An attacker can exploit this issue to modify initial query and reveal information from mysql databse. see u, karmaguedon
Current thread:
- Aceboard forum, SQL injection karmaguedon (Aug 03)