AOH :: HP Unsorted U :: C07-1031.HTM

uPhotoGallery (v 1.1) SQL Injection



uPhotoGallery (v 1.1) SQL Injection
uPhotoGallery (v 1.1) SQL Injection



#Aria-Security Team Advisory
# For English > 
# For Persian > 
#-----------------------------------------------------------
#Software: uPhotoGallery 1.1
#Method: SQL injection
#
#PoC:
#http://target/slideshow.asp?img_id=290&ci=[SQL Injection] 
#http://target/thumbnails.asp?ci=[SQL Injection] 
#
#Contact: Advisory@aria-security.net 

The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2014 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.