Producto Afectado:
=================
PHP HANDICAPPER
http://www.phphandicapper.com
Vulnerabilidades:
============
1.Sql Injection
2. Xss
3.CRLF injection
Mi Prueba de Concepto:
================
1-http://www.phphandicapper.com/front/process_signup.php?serviceid=[SQL]
2-http://www.phphandicapper.com/front/msg.php?msg=[XSS]
3-http://www.phphandicapper.com/front/process_signup.php?login=[CRLF]
Solucion:
=========
1. vendedor contactado 09/10/2005
2. nuevo contacto 20/10/2005
3. publico bug 02/11/2005
Salu2










Autor


En línea


