Re: [Full-disclosure] Knorr.de SQL Injection and XSS Vulnerabilities
- From: poo <skodliv@xxxxxxxxx>
- Date: Mon, 5 Mar 2007 14:31:16 +0100
I CARE
On 3/4/07, Lolek of TK53 <lolek1337@xxxxxxxxxxxxxx> wrote:
Hi,
On 3/2/07, sbauer@xxxxxxxxxxxxxxx <sbauer@xxxxxxxxxxxxxxx> wrote:
> Author: Sebastian Bauer
> Web: http://blog.gjl-network.net
> Date: 01/12/07
>
> Vuln. website: http://www.knorr.de
> Vulnerability: SQL Injection (mainly login authentication bypass + any
> other SQL inj.
> possibility), XSS
> Significance: Very Critical
OMFG who cares.....
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
--
smile tomorrow will be worse
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
- References:
- [Full-disclosure] Knorr.de SQL Injection and XSS Vulnerabilities
- From: sbauer
- Re: [Full-disclosure] Knorr.de SQL Injection and XSS Vulnerabilities
- From: Lolek of TK53
- [Full-disclosure] Knorr.de SQL Injection and XSS Vulnerabilities
- Prev by Date: [Full-disclosure] ePortfolio version 1.0 Java Multiple Input Validation Vulnerabilities
- Next by Date: [Full-disclosure] iDefense Security Advisory 03.05.07: Apple QuickTime Color Table ID Heap Corruption Vulnerability
- Previous by thread: Re: [Full-disclosure] Knorr.de SQL Injection and XSS Vulnerabilities
- Next by thread: [Full-disclosure] MailEnable v2.37 APPEND exploit
- Index(es):
Relevant Pages
|