Bugtraq mailing list archives

Re: [ECHO_ADV_103$2009] taifajobs <= 1.0 (jobid) Remote SQL Injection Vulnerability


From: tiha () taifaweb net
Date: Tue, 31 Mar 2009 02:07:13 -0600

A fix has been done on this problem, one can no longer pass sql scripts and validation is done to ensure that the jobid 
actually exist before executing of and sql script


Current thread: