Lootan(kedor) Sql Injection vulnerability
- From: arash.setayeshi@xxxxxxxxx
- Date: Fri, 23 Jan 2009 20:12:08 -0700
Product : Lootan System
vendor : www.kedor.cn
vulnerable versions : RC1 & prior
example :
http://example/ly/login.asp?username=[SQL Command]
- Prev by Date: [HACKATTACK Advisory 25012009]ConPresso CMS 4.07 - Session Fixation, XFS, XSS
- Next by Date: LDF Sql injection vulnerability
- Previous by thread: [HACKATTACK Advisory 25012009]ConPresso CMS 4.07 - Session Fixation, XFS, XSS
- Next by thread: LDF Sql injection vulnerability
- Index(es):