ColdBookmarks version 1.22 suffers from a remote SQL injection vulnerability.
e1745a31f8c4a1592e9f460ec06fcee8# ColdGen - coldbookmarks v1.22 Remote 0day SQL Injection vulnerability
# Vendor: http://www.coldgen.com/
# Found by: mr_me (net-ninja.net)
PoC
http://[target]/[path]/index.cfm?fuseaction=EditBookmark&BookmarkID=[SQLi]&CFID=XXXXXX&CFTOKEN=XXXXXXXX
Comments
No comments yet, be the first!