SecurityAlert : 931 CVE : CVE-2006-2508 SecurityRisk : Medium (About) Remote Exploit : Yes Local Exploit : No Exploit Available : Yes Credit : luny youfucktard com Published : 23.05.2006
Affected Software :
Stylish Text Ads Script
Advisory Content :
Homepage of script
http://www.yourfreeworld.com/script/textads.asp
Stylish Text Ads Script can be one of the most useful tools for any
webmaster.
If you own 1 or more websites and want to sell text ads then this tool can
be one of the best tool for you.
Effected files:
tr1.php
advertise.php
Exploit:
SQL Injection on tr1.php can shows full path disclosure errors as well as
inproper filtering on the forms of advertise.php that can lead to malicious
code injection or XSS.
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.