Bugtraq mailing list archives
aeries browser interface(ABI) 3.8.3.14 Remote SQL Injection
From: arsalan1991 () gmail com
Date: 25 Mar 2008 07:32:31 -0000
Discovered By : Arsalan Emamjomehkashan aeries browser interface(ABI) 3.8.3.14 Remote SQL Injection Website:http://aeries.com/ SQL injection: GradebookOptions.asp?GrdBk=SQL loginproc.asp If you post variable "SchlCode" XSS: UserName variable on loginproc.asp and usr on Login.asp
Current thread:
- aeries browser interface(ABI) 3.8.3.14 Remote SQL Injection arsalan1991 (Mar 25)