[VIM] [Full-disclosure] CubeCart <=3.0.14 Bind Sql InjectionPOC.

J. M. Seitz jms at bughunter.ca
Mon Nov 27 17:15:16 EST 2006


>>
echo base64_decode($packetr);

- The data here only contains bs characters with the phrase "Novalok is a
fucking moron"

- Don't forget that Novalok is the author.

So pretty much this doesn't do a single thing except spit out the phrase
above.

/str0ke 
<<

Yeah I saw that part, but did anyone test the proposed vulnerable package
aside from this PoC &*^# pile? Or are we not bothering?


JS



More information about the VIM mailing list