Home / os / winme

Left 4 Dead Stats 1.1 SQL Injection Vulnerability

Posted on 21 March 2010

================================================= Left 4 Dead Stats 1.1 SQL Injection Vulnerability ================================================= > Left 4 Dead Stats SQL Injection Vulnerability > Author: Sora > Website: http://greyhathackers.wordpress.com/ > Google Dork: "In your dreams, script kiddies." # VULNERABILITY DESCRIPTION: Left 4 Dead Stats suffers from a remote SQL injection vulnerability in player.php. # VULNERABILITY SOLUTION: The owner of the website can sanitize the database inputs. # Proof of Concept: http://www.site.com/l4dstats/player.php?steamid=' # Inj3ct0r.com [2010-03-21]

 

TOP