0day.today - Biggest Exploit Database in the World.
Things you should know about 0day.today:
Administration of this site uses the official contacts. Beware of impostors!
- We use one main domain: http://0day.today
- Most of the materials is completely FREE
- If you want to purchase the exploit / get V.I.P. access or pay for any other service,
you need to buy or earn GOLD
Administration of this site uses the official contacts. Beware of impostors!
We DO NOT use Telegram or any messengers / social networks!
Please, beware of scammers!
Please, beware of scammers!
- Read the [ agreement ]
- Read the [ Submit ] rules
- Visit the [ faq ] page
- [ Register ] profile
- Get [ GOLD ]
- If you want to [ sell ]
- If you want to [ buy ]
- If you lost [ Account ]
- Any questions [ admin@0day.today ]
- Authorisation page
- Registration page
- Restore account page
- FAQ page
- Contacts page
- Publishing rules
- Agreement page
Mail:
Facebook:
Twitter:
Telegram:
We DO NOT use Telegram or any messengers / social networks!
You can contact us by:
Mail:
Facebook:
Twitter:
Telegram:
We DO NOT use Telegram or any messengers / social networks!
Coupon Script v6.0 - SQL Injection Vulnerability
Title: ====== Coupon Script v6.0 - SQL Injection Vulnerability Introduction: ============= PHP Coupon Software Script is a Powerful and Robust Internet Software Program Developed to provide an affordable and easy way to operate local and National Full Page Coupon Advertisements for local and Business directory owners and entrepreneurs seeking income opportunities. By Selling Coupons along with Full page Advertisements for your Advertisers and Clients you have the ability and flexibility to offer a more efficient, cost cutting, Faster and more flexible way for your clients to advertise, rather than advertising in a local newspaper, Your customers will appreciate the ease of creating and editing their Full Page Coupon and Business advertisement Page instantly online 24 hours a day 7 days a week. (Copy of the Vendor Homepage: http://www.couponscript.com/ ) Details: ======== An SQL Injection vulnerability is detected on the PHP Coupon Script version 6.0 (latest). The vulnerability allows an attacker (remote) to inject/execute own sql commands on the affected application dbms. Successful exploitation of the vulnerability results in dbms, service & application compromise. The vulnerabilities are located on the id value of the file `index.php` request. Vulnerable Module(s): [+] index.php Vulnerable Value(s): [+] bus= # 0day.today [2024-11-16] #