Home page logo

bugtraq logo Bugtraq mailing list archives

aspReady FAQ - open for SQL-injections
From: preben () watchcom no
Date: 6 Oct 2005 17:13:19 -0000

The free, open source project called "aspReady FAQ" is open for SQL-injection. 

This results is admin access with the ability change/delete the entire database.

An example on SQL-inject that works could be:

After doing a google search, I've found out that some companies are actually using this free aspReady FAQ. 

Credits to: Preben Nylokken

The system can be found at:

Live sample can be found and tested on:

- Preben Nyloekken

  By Date           By Thread  

Current thread:
  • aspReady FAQ - open for SQL-injections preben (Oct 06)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]