Bugtraq mailing list archives

Aceboard forum, SQL injection


From: karmaguedon () hotmail com
Date: 3 Aug 2007 12:13:39 -0000

Aceboard is prone to a sql injection vulnerability because it fails to properly sanitize user-supplied input into 
Recherche.php form.

An attacker can exploit this issue to modify initial query and reveal information from mysql databse.


see u, karmaguedon


Current thread: