webhostingtalk.nl
advertentie
advertentie

Evenementen voor de komende 60 Dag(en)

Resultaten 1 tot 2 van de 2
          

  1.  
    #1
    mod
    Gast
    n/a Berichten
    Berichten zijn liked




    PHP-Nuke SQL Injection



    Version: PHP-Nuke 6.6
    Language: PHP
    Web site: phpnuke.org
    Status: Vendor has been notified

    There's an SQL injection hole in modules.php.

    http://phpnuke.org/modules.php?name=...9%20or%20cid=2

    This is from not filtering 'cid', it should be checked that it is only numeric with is_numeric(). This hole could allow viewing of password hashes if the database is mysql 4.x.

    This may effect other versions.


  2.  
    #2
    3APA3A
    Gast
    n/a Berichten
    Berichten zijn liked




    Re: PHP-Nuke SQL Injection

    Dear mod,

    This SQL injection bug and another one (in web-link) in Spaiz-Nuke and
    PHP-nuke was reported few days ago by 1dt.w0lf (idtwolf_at_sigaret.net)
    (sorry, in Russian, but you can see exploitation examples):
    http://www.security.nnov.ru/search/d...asp?docid=5201

    --Wednesday, October 8, 2003, 7:37:38 PM, you wrote to bugtraq@securityfocus.com:



    m> Version: PHP-Nuke 6.6
    m> Language: PHP
    m> Web site: phpnuke.org
    m> Status: Vendor has been notified

    m> There's an SQL injection hole in modules.php.

    m> http://phpnuke.org/modules.php?name=...9%20or%20cid=2

    --
    ~/ZARAZA
    Но Гарри... я безусловно отдаю предпочтение ему, за
    высокую питательность и какое-то особенно нежное мясо. (Твен)


  3. advertentie



Forum Rechten

  • Je mag geen nieuwe onderwerpen plaatsen
  • Je mag geen reacties plaatsen
  • Je mag geen bijlagen toevoegen
  • Je mag jouw berichten niet wijzigen
  •  



webhostingtalk.nl
Webhostingtalk.nl © copyright 2001-2013 Alle Rechten Gereserveerd.

Content Relevant URLs by vBSEO 3.6.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75