[39780] in bugtraq

home help back first fref pref prev next nref lref last post

Re: PHPNews SQL injection vulnerability

daemon@ATHENA.MIT.EDU (foster@ghc.ru)
Thu Jul 21 13:44:02 2005

Date: 21 Jul 2005 05:58:07 -0000
Message-ID: <20050721055807.22094.qmail@securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: foster@ghc.ru
To: bugtraq@securityfocus.com

by the way, to fix vulbnerability, you need to 
addslashes() $_POST['password'] variable to.

home help back first fref pref prev next nref lref last post