exploit-db-mirror/platforms/php/webapps/31048.txt
Offensive Security acf3e755a7 Updated 01_21_2014
2014-01-21 04:28:26 +00:00

11 lines
No EOL
585 B
Text
Executable file

source: http://www.securityfocus.com/bid/27397/info
PacerCMS is prone to multiple SQL-injection vulnerabilities because the application fails to properly sanitize user-supplied input before using it in SQL queries.
A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database.
These issues affect versions prior to PacerCMS 0.6.1.
NOTE: To exploit these issues, the attacker may require 'staff member' access.
http://www.example.com/pacercms/siteadmin/article-edit.php?id=[SQL]