AOH :: HP Unsorted O :: B06-4335.HTM

OneOrZero Helpdesk V1.6.4.1 susceptible to SQL injection and XSS



OneOrZero Helpdesk V1.6.4.1 susceptible to SQL injection and XSS
OneOrZero Helpdesk V1.6.4.1 susceptible to SQL injection and XSS



vendor:=0D
=0D
http://www.oneorzero.com/=0D 
=0D
vuln :=0D
=0D
http://[host]/supporter/index.php?t=tupd&id=[SQL]=0D 
=0D
http://[host]/supporter/index.php?t=tupd&id=[XSS]=0D 
=0D
=0D
Author : Vampire=0D
=0D
vampire_chiristof@yahoo.com=0D 
=0D
Homepage : Www.HackerZ.iR=0D 
=0D
Www.H4ckerZ.Com=0D 
=0D
Iran HackerZ Security Team

The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2014 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.