[Full-disclosure] Local File Include Vulnerabilities in YaBB <= 2.1(all version)

2007-06-19 Thread krasza
Local File Include Vulnerabilities Problem: Local File Include Vulnerabilities Product: YaBB <= 2.1(all version) Web page:http://www.yabbforum.com/ Credit:Maciej `krasza` Kukla @mail:[EMAIL PROTECTED] homepage:www.krasza.int.pl 1.Description "YaBB is a leading free forum software pack

[Full-disclosure] Blind sql injection attack in INSERT syntax on PHP-nuke <=8.0 Final

2007-02-20 Thread krasza
Hello, it is my new advisory: Problem:Blind sql injection attack in INSERT syntax Product:PHP-nuke <=8.0 Web page:http://phpnuke.org/ Credit:Maciej `krasza` Kukla @mail:[EMAIL PROTECTED] homepage:www.krasza.int.pl 1.Description (...)PHP-Nuke 8.0 Final version. This version includes a new a