lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20060328230157.2117.qmail@securityfocus.com> Date: 28 Mar 2006 23:01:57 -0000 From: dabdoub-mosikar@...occan-security.com To: bugtraq@...urityfocus.com Subject: PhxContacts <= 0.93.1 beta Multiple SQL injection & xss [+]PhxContacts [+]website of software:http://www.phoetux.net/ [+]founded by Morocco Security Team [+]special 10x to:all friends ww.lezr.com & www.cim-team.org [+]xss [+]http://[target]/login.php?m=[xss] [+]SQL [+]http://[target]/carnet.php?view_cat=&all_lines=true&motclef=[sql] [+]http://[target]carnet.php?view_cat=2&nbr_line_view=[sql] [+]http://[target]/contact_view.php?id_contact=[sql] [+]have nice day