PDA

Bekijk Volledige Versie : Aceboard forum, SQL injection



karmaguedon@hotmail.com
06/08/07, 22:42
Aceboard is prone to a sql injection vulnerability because it fails to properly sanitize user-supplied input into Recherche.php form.

An attacker can exploit this issue to modify initial query and reveal information from mysql databse.


see u, karmaguedon