|
JGBBS 3.0beta1 Version Search.ASP "Author" SQL Injection Exploit
Type :
SQL Injection
Release Date :
{2007-03-13}
Product / Vendor :
JGBBS Is a Tree-style Online Forum System
http://sourceforge.net/projects/jgbbs/
Bug :
http://localhost/script/search.asp?author=-SQL Inj.-&bid=0
SQL Injection Exploit :
UniquE@UniquE-Key.ORGcolor="#FF0000">UniquE@UniquE-Key.ORG
color="#FF0000">http://UniquE-Key.ORG