[40577] in bugtraq
Re: Online Dating Software by AEwebworks - aeDating Script <= 4.0
daemon@ATHENA.MIT.EDU (security@aewebworks.com)
Mon Oct 3 18:30:07 2005
Date: 2 Oct 2005 10:47:17 -0000
Message-ID: <20051002104717.31086.qmail@securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: security@aewebworks.com
To: bugtraq@securityfocus.com
What you described cannot be used to do sql injection. This error is not even possible to appear if you use search in aeDating in a proper way and not trying to find security holes in the script.
What you found is not even a security hole.