[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-disclosure] Knorr.de SQL Injection and XSS Vulnerabilities
- To: "sbauer@xxxxxxxxxxxxxxx" <sbauer@xxxxxxxxxxxxxxx>
- Subject: Re: [Full-disclosure] Knorr.de SQL Injection and XSS Vulnerabilities
- From: "Lolek of TK53" <lolek1337@xxxxxxxxxxxxxx>
- Date: Sun, 4 Mar 2007 14:45:46 +0100
Hi,
On 3/2/07, sbauer@xxxxxxxxxxxxxxx <sbauer@xxxxxxxxxxxxxxx> wrote:
> Author: Sebastian Bauer
> Web: http://blog.gjl-network.net
> Date: 01/12/07
>
> Vuln. website: http://www.knorr.de
> Vulnerability: SQL Injection (mainly login authentication bypass + any
> other SQL inj.
> possibility), XSS
> Significance: Very Critical
OMFG who cares.....
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/