lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20061108224644.26631.qmail@securityfocus.com> Date: 8 Nov 2006 22:46:44 -0000 From: saps.audit@...il.com To: bugtraq@...urityfocus.com Subject: omnistar article manager [multiples injection sql] vendor site:http://www.omnistararticle.com/ product :omnistar article manager bug:injection sql risk : high path: /articles/comments.php?article_id='[sql] /articles/article.php?op=save&article_id='[sql] /articles/pages.php?page_id='[sql] laurent gaffié & benjamin mossé http://s-a-p.ca/ contact: saps.audit@...il.com