lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20060815105733.14666.qmail@securityfocus.com> Date: 15 Aug 2006 10:57:33 -0000 From: vampire_chiristof@...oo.com To: bugtraq@...urityfocus.com Subject: OneOrZero Helpdesk V1.6.4.1 susceptible to SQL injection and XSS vendor: http://www.oneorzero.com/ vuln : http://[host]/supporter/index.php?t=tupd&id=[SQL] http://[host]/supporter/index.php?t=tupd&id=[XSS] Author : Vampire vampire_chiristof@...oo.com Homepage : Www.HackerZ.iR Www.H4ckerZ.Com Iran HackerZ Security Team