[VIM] [Full-disclosure] CubeCart <=3.0.14 Bind Sql InjectionPOC.
J. M. Seitz
jms at bughunter.ca
Mon Nov 27 17:15:16 EST 2006
>>
echo base64_decode($packetr);
- The data here only contains bs characters with the phrase "Novalok is a
fucking moron"
- Don't forget that Novalok is the author.
So pretty much this doesn't do a single thing except spit out the phrase
above.
/str0ke
<<
Yeah I saw that part, but did anyone test the proposed vulnerable package
aside from this PoC &*^# pile? Or are we not bothering?
JS
More information about the VIM
mailing list