exploit-db-mirror/platforms/php/webapps/25436.txt
Offensive Security fffbf04102 Updated
2013-12-03 19:44:07 +00:00

8 lines
No EOL
424 B
Text
Executable file

source: http://www.securityfocus.com/bid/13212/info
eGroupWare is prone to multiple input validation vulnerabilities. A fixed version is available.
The issues arise due to a failure of the application to properly validate user-supplied input. These issues result in cross-site scripting and SQL injection attacks.
http://egroupware/tts/index.php?filter=u99[SQL]
http://egroupware/tts/index.php?filter=c99[SQL]