|
__________________________=0D
=0D
A R I A - S E C U R I T Y =0D
___________________________=0D
A-Cart SQL Injection And Cross-Site Scripting =0D
http://alanward.net=0D
=0D
Cross Site Scripting:=0D
http://localhost/path/error.asp?msg=XSS=0D
=0D
SQL Injection:=0D
http://localhost/path/product.asp?productid=' SQL COMMAND=0D
=0D
Table Names are:=0D
categories=0D
customers=0D
orderitems=0D
orders=0D
products=0D
users (username,fullname,password,privileges)=0D
=0D
Credits Goes To Aria-Security Team =0D
http://Aria-Security.Net=0D
The-0utl4w=0D