[VIM] SOBI2 showbiz SQL injection - false, or site-specific
str0ke
str0ke at milw0rm.com
Mon Feb 2 15:32:01 UTC 2009
Went through old history, only tested it on the target he gave and
grabbed the version info. I would say site specific.
str0ke wrote:
> I don't remember testing this but since the author was new I'm pretty
> sure I tested it out on multiple sites before posting it just to make
> sure he was legit.
>
> Steven M. Christey wrote:
>
>> http://www.milw0rm.com/exploits/7841
>>
>> BID:33378 says the vendor disputed.
>>
>> I downloaded and grepped for "showbiz" and "bid" and didn't find
>> anything.
>>
>> Maybe this was some site-specific modification?
>>
>> - Steve
>>
>>
>>
>
>
More information about the VIM
mailing list