Log in

View Full Version : Open Auto Classifieds SQL Injection XSS and Filepath Disclosure



newsbot
28-08-2009, 02:29 AM
Open Auto Classifieds is a vehicle listings manager that is popular with car dealer websites. It's written in PHP + MySQL. <ExcerptMultiple vulnerabilities exist in Open Auto Classifieds. These vulnerabilities can be exploited to allow access to read any information from the database, attack web browser clients through the web site, disclose the file path of the application and execute any arbitrary command on the web server.>

-</p>

Make your website safer. Use external penetration testing (http://www.beyondsecurity.com/penetration-testing.html) service. First report ready in one hour!</p>

**Hidden Content: Check the thread to see hidden data.**