source: https://www.securityfocus.com/bid/15215/info Multiple Techno Dreams scripts are prone to multiple SQL injection vulnerabilities. These issues are due to a failure in the applications to properly sanitize user-supplied input before using it in SQL queries. Successful exploitation could result in a compromise of the applications, disclosure or modification of data, or may permit an attacker to exploit vulnerabilities in the underlying database implementation.

Techno Dreams Announcement - Guestbook - WebDirectory Script Login-Bypass PoC - Kapda `s advisory

Discovery and exploit by farhadkey [at} kapda.ir

Kapda - Security Science Researchers Institute of Iran

Techno Dreams Mailing List Script Login-Bypass PoC - Kapda `s advisory

Discovery and exploit by farhadkey [at} kapda.ir

Kapda - Security Science Researchers Institute of Iran