Quantcast
Channel: Files from TecR0c ≈ Packet Storm
Viewing all articles
Browse latest Browse all 25

Joomla 1.5 VirtueMart 1.1.7 Blind SQL Injection

$
0
0
A vulnerability was discovered by Rocco Calvi and Steve Seeley which identifies unauthenticated time-based blind SQL injection in the "page" variable of the virtuemart component. This vulnerability allows an attacker to gain information from the database with specially crafted URLs taking advantage of the MySQL benchmark. This issue was patched in version 1.1.7a.

Viewing all articles
Browse latest Browse all 25

Trending Articles