lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20060803061655.21750.qmail@securityfocus.com> Date: 3 Aug 2006 06:16:55 -0000 From: mfoxhacker@...il.com To: bugtraq@...urityfocus.com Subject: Vwar v1.5.0 <= Sql Injection and XSS vuln. IHST > Iran HackerZ Security Team (WhiteHat Part) ------------------------------------------------- Vendor : www.vwar.de vuln. Version = v1.5.0 and lower Credits : MFox Contact : mfoxhacker@...il.com HomePage : www.hackerz.ir ------------------------------------------------- Proof of Concept Http://[Target]/[Path]/war.php?page=[SQL] & [XSS] ------------------------------------------------- Gr33tZ : S3rv3r_Hack3r - Hessam-X - BlOod_MoOn - Rs_VB - Rh_b_H - S433d_Only_LinuX - saTTar_li -------------------------------------------------