UTStats XSS, SQL Injection & Full path disclosure
|| CVE: 2010-5009
|Author: LuM Member
||Vulnerable App: N/A
# Exploit Title: UTStats XSS, SQL Injection & Full path disclosure
# Date: 13-06-2010
# Author: LuM Member
# Software Link: http://www.unrealadmin.org/forums/showthread.php?t=29786
# Version: All recent versions.
# Tested on: Windows 7 x64
# CVE : none
# Code :
There are most likely some more bugs in it. I didn't check the code in
If you check google, you see there are quite some installs.
Full Path Disclosure:
Greetings to LuM.