JGS-Portal 3.0.1 - 'ID' SQL Injection

EDB-ID:

25570




Platform:

PHP

Date:

2005-04-30


source: https://www.securityfocus.com/bid/13451/info

JGS-Portal is prone to an SQL injection. This issue may potentially be exploited to compromise the software or gain unauthorized access to the database.

The consequences of exploitation will depend on the nature of the vulnerable SQL query and the capabilities of the underlying database implementation. 

http://www.example.com/jgs_portal.php?id='SQL_here