JGS-Portal 3.0.1 - 'ID' SQL Injection
Author: admin@batznet.com
type: webapps
platform: php
port:
date_added: 2005-04-30
date_updated: 2013-05-20
verified: 1
codes: CVE-2005-1479;OSVDB-16296
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/13451/info
JGS-Portal is prone to an SQL injection. This issue may potentially be exploited to compromise the software or gain unauthorized access to the database.
The consequences of exploitation will depend on the nature of the vulnerable SQL query and the capabilities of the underlying database implementation.
http://www.example.com/jgs_portal.php?id='SQL_here