Get a Pentest and security assessment of your IT network.

News

Yahoo! Blind SQL Injection could lead to data leakage

Blind SQL Injection vulnerability is located in the index.php file of the soeasy module when processing to request manipulated scId parameters. By manipulation of the seed parameter the attackers can. inject own SQL commands to breach the database of that vulnerable application and get access to the user data. The vulnerability can be exploited by remote attackers without privileged application user account and without required user interaction. Successful exploitation of the. SQL injection vulnerability results in application and application service DBMS compromise. Ebrahim Hegazy reported the vulnerability to the Yahoo! The security team with recommendations on how to patch the vulnerability.

Source: https://thehackernews.com/2013/04/yahoo-blind-sql-injection-could-lead-to.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Vulnerabilities In Alibaba threatens security of million users

News

Russian cybercriminal Roman Seleznev gets another prison sentence