[<prev] [next>] [day] [month] [year] [list]
Message-ID: <20060328215724.14408.qmail@securityfocus.com>
Date: 28 Mar 2006 21:57:24 -0000
From: fritz-li@...il.hinet.net
To: bugtraq@...urityfocus.com
Subject: Re: Re: phpBB 2.06 search.php SQL injection
My phpBB is 2.06, however, when I implement the script to test the vulnerability of my site, there is no result coming out, is that means that my website is OK?
Besides, what do we need to change of the value of these serizable string in order to make it work?
What is the difference between "a:1:{s:0:"";s:4:"test";}" and";a:1:{i:0;s:8:"aaaaaa";}s:7:"s??
Cheers
Powered by blists - more mailing lists