[VIM] [Full-disclosure] CubeCart <=3.0.14 Bind Sql InjectionPOC.

J. M. Seitz jms at bughunter.ca
Mon Nov 27 17:15:16 EST 2006

echo base64_decode($packetr);

- The data here only contains bs characters with the phrase "Novalok is a
fucking moron"

- Don't forget that Novalok is the author.

So pretty much this doesn't do a single thing except spit out the phrase


Yeah I saw that part, but did anyone test the proposed vulnerable package
aside from this PoC &*^# pile? Or are we not bothering?


