LDF suffers from a remote SQL injection vulnerability.
49b1f9702aa8977f8615c67dabebe107Product : LDF
vendor : www.ldf.22.cn
Vulnerable Versions : All
Default.asp Page has an issue on validating "Page" parameter , It could be exploited by attacker & attacker can inject arbitrary Sql Commands
http://www.example.com/[ldf path]/default.asp?page=[SQL COMMAND]
Comments
No comments yet, be the first!