OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
SQL INJECTION in DLMan Pro. PHPBB Mod.

From: rock master (rock_maskhotmail.com)
Date: Mon Apr 04 2005 - 18:31:19 CDT


SQL Injection was found in the Variable $file_id in : DLMan Pro' Mod
vulnerable system :
phpBB 2.0.x
exploit :
dlman.php?func=file_info&file_id='[SQL Injection]

Bug Found by : LovER BOY

SecurityGurus Team
www.securitygurus[d0t]Net