PHPBasket 4.0 - SQL Injection Vulnerability  

Wednesday, February 4, 2009

[o] PHPBasket 4.0 SQL Injection Vulnerability
Software : PHPBasket version 4.0
Vendor : http://www.phpbasket.com/
Author : NoGe

[o] Vulnerable file
product.php

[o] Exploit
http://localhost/[path]/product.php?cat_id=[sql]

[o] Dork
"Powered by PHPBasket"

Read More...

AddThis Social Bookmark Button
Links to this post


[d]esign by Amanda [e]dited by NoGe