Multiple XSS and SQL Injection in aWebNews

Summary for Multiple XSS and SQL Injection in aWebNews

Vulnerability
Multiple XSS and SQL Injection in aWebNews
Discovered
2006.04.01
Last Update
2006.04.11 Exploitation code published
ID
EV0116
CVE
CVE-2006-1612 CVE-2006-1613
Risk Level
medium
Type
Multiple Vulnerabilities
Status
Unpatched. Vendor notyfied.
Vendor
n/a
Vulnerable Software
aWebNews
Version
1.0
PoC/Exploit
Available
Solution
Not available
Discovered by
Aliaksandr Hartsuyeu (eVuln.com)

Order Source Code Review made by eVuln team

Defend against hacking by source code testing of your site made by eVuln team.The work will be done by experts in web application security.