[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: modules name(Downloads)SQL Injection Exploit



What application are you talking about?

On 5 May 2006 Mster-X@xxxxxxxxxxx wrote:

> ********************
> By: Mr-X
> Email: Mster-X@xxxxxxxxxxx
> Subject: modules name(Downloads)SQL Injection 
> ********************
> 
> example:-
> /modules.php?/modules.php?name=Downloads&d_op=viewdownload&cid=[SQL]
> 
> ********************
> 

-- 
Paul Laudanski, Microsoft MVP Windows-Security
Submit phish: www.castlecops.com/pirt
[de] http://de.castlecops.com
[en] http://castlecops.com
[wiki] http://wiki.castlecops.com