[Full-disclosure] 212cafeBoard Sql injection

Lopez Bran wenzel.vete at gmail.com
Tue Sep 4 14:32:30 BST 2007


Hello

Vulnerable :
-----------
212cafeBoard

Version:
-------
6.30 Beta

Vendor:
------
http://www.212cafe.com


Description:
-----------
Sql injection 212cafeBoard v6.30 Beta :


http://site/Board/read.php?id=[INJECT SQL CODE]

Path:
-----
I try to contact the developer but never receiver a response.

Regards,
Lopez Bran Digrap




Full-Disclosure is hosted and sponsored by Secunia.