[32858] in bugtraq
RE: SQL Injection Vuln In osCommerce 2.2-MS1
daemon@ATHENA.MIT.EDU (JeiAr)
Mon Dec 15 17:42:26 2003
Date: 15 Dec 2003 06:15:30 -0000
Message-ID: <20031215061530.20789.qmail@sf-www2-symnsj.securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: JeiAr <security@gulftech.org>
To: bugtraq@securityfocus.com
Threw together a quick script that shop owners or admins can use to test whether or not they are vuln. Should be handy in cases where store owners are not sure what version they are running etc.
http://www.gulftech.org/vuln/ossqlin.txt