logo       

[UNIX] My Little Forum SQL Injection: msg#00086

security.securiteam

Subject: [UNIX] My Little Forum SQL Injection

The following security advisory is sent to the securiteam mailing list, and can
be found at the SecuriTeam web site: http://www.securiteam.com
- - promotion

The SecuriTeam alerts list - Free, Accurate, Independent.

Get your security news from a reliable source.
http://www.securiteam.com/mailinglist.html

- - - - - - - - -



My Little Forum SQL Injection
------------------------------------------------------------------------


SUMMARY

<http://www.mylittlehomepage.net/my_little_forum> my little forum - "A
simple web-forum that supports classical thread view (message tree) as
well as message board view to display the messages."

My Little Forum vulnerable to SQL Injection.

DETAILS

Vulnerable Systems:
* my little forum versions 1.5 and 1.6beta

Vulnerable Code:
<Prev in Thread] Current Thread [Next in Thread>
Google Custom Search

News | FAQ | advertise