Authentication Bypass and SQL Injection in MD News

Summary for Authentication Bypass and SQL Injection in MD News

Vulnerability
Authentication Bypass and SQL Injection in MD News
Discovered
2006.04.05
Last Update
2006.04.15 Exploitation code published
ID
EV0120
CVE
CVE-2006-1755 CVE-2006-1756
Risk Level
medium
Type
Multiple Vulnerabilities
Status
Unpatched. No reply from developer(s)
Vendor
n/a
Vulnerable Software
MD News
Version
1
PoC/Exploit
Available
Solution
Not available
Discovered by
Aliaksandr Hartsuyeu (eVuln.com)

Order PHP Code Test made by eVuln team

Prevent attacks by source code testing of your site made by our team.The work will be done by experts in website security.