Web Wiz Forums v.8.05 (MySQL version) SQL Injection Security …
Filed under injecting, exploited, confirmed, arbitrary, member, query, queries, version, search, manipulate
Input passed to the “name” parameter in “pop_up_member_search.asp” isn’t properly sanitised before being used in a SQL query. This can be exploited to manipulate SQL queries by injecting arbitrary SQL code. Confirmed in version 1.1.4. …
Read the original:
Web Wiz Forums v.8.05 (MySQL version) SQL Injection Security …
Related Posts
- BlognPlus Unspecified SQL Injection Vulnerability - Secunia
- DBAudit version 3.2 - Auditing solution for databases -
- TITLE: Courier Authentication Library SQL Injection Vulnerability …
- DB Audit version 4.0 released
- Java Web (Web server version) Services It’s possible to create a
May 23rd, 2007.
RSS Full


Leave a Comment