| To: | bugtraq@securityfocus.com |
|---|---|
| Subject: | Multiple Bugs in Future Internet ( XSS & SQL Injection ) |
| From: | xx_hack_xx_2004@hotmail.com |
| Date: | 23 Dec 2006 15:39:01 -0000 |
| Delivered-to: | sp-com-lists@consult.net |
| Delivered-to: | bugtraq-list@securepoint.com |
| Delivered-to: | mailing list bugtraq@securityfocus.com |
| Delivered-to: | moderator for bugtraq@securityfocus.com |
| List-help: | <mailto:bugtraq-help@securityfocus.com> |
| List-id: | <bugtraq.list-id.securityfocus.com> |
| List-post: | <mailto:bugtraq@securityfocus.com> |
| List-subscribe: | <mailto:bugtraq-subscribe@securityfocus.com> |
| List-unsubscribe: | <mailto:bugtraq-unsubscribe@securityfocus.com> |
| Mailing-list: | contact bugtraq-help@securityfocus.com; run by ezmlm |
Hello Vulnerable : Future Internet web : http://www.future-internet.com SQL Injection : http://www.example.com/path_of_script/index.cfm?fuseaction=Portal.Showpage&categoryid=311&newsId=[SQL] http://www.example.com/path_of_script/index.cfm?fuseaction=Portal.Showpage&categoryid=[SQL] http://www.example.com/path_of_script/index.cfm?langId=[SQL] XSS : http://www.example.com/path_of_script/index.cfm?fuseaction=Portal.ShowPage&categoryId=[XSS] For example u can put : http://www.example.com/path_of_script/index.cfm?fuseaction=Portal.ShowPage&categoryId=<script>alert(document.cookie)</script> Discovery by Linux_Drox ( Qptan ) S-H-T www.LeZr.Com/vb |
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Efkan Forum v1.0 SqL Inj. Vuln., ShaFuq31 |
|---|---|
| Next by Date: | iDefense Security Advisory 12.23.06: Novell NetMail IMAPD subscribe Buffer Overflow Vulnerability, iDefense Labs |
| Previous by Thread: | Efkan Forum v1.0 SqL Inj. Vuln., ShaFuq31 |
| Next by Thread: | iDefense Security Advisory 12.23.06: Novell NetMail IMAPD subscribe Buffer Overflow Vulnerability, iDefense Labs |
| Indexes: | [Date] [Thread] [Top] [All Lists] |