Arbitrary JavaScript code insertion is possible in BBcode [img].
2. Cookie 'username' SQL Injection Vulnerability
Vulnerable Script: config.php
Variables $_COOKIE['username'] $_COOKIE['password'] are not properly
sanitized. This can be used to bypass authentication or make any SQL query
by injecting arbitrary SQL code.
--------------PoC/Exploit----------------------
Available at: http://evuln.com/vulns/88/exploit.html
--------------Solution---------------------
Vendor-provided patch is available here:
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.