[40577] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Online Dating Software by AEwebworks - aeDating Script <= 4.0

daemon@ATHENA.MIT.EDU (security@aewebworks.com)
Mon Oct 3 18:30:07 2005

Date: 2 Oct 2005 10:47:17 -0000
Message-ID: <20051002104717.31086.qmail@securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: security@aewebworks.com
To: bugtraq@securityfocus.com

What you described cannot be used to do sql injection. This error is not even possible to appear if you use search in aeDating in a proper way and not trying to find security holes in the script. 

What you found is not even a security hole. 


home help back first fref pref prev next nref lref last post