Login Register


Adminer up to 4.6.2 found vulnerable filter_list
Author
Message
Adminer up to 4.6.2 found vulnerable #1
[Image: adminer-wireshark.png]

Quote:AFAIK this attack method has not been published before, but in hindsight I have observed it being used by different Magecart factions at least since October 2018 (although I didn’t understand what was going on back then). The vulnerability was subsequently used to inject payment skimmers on several high-profile stores (government & multinationals).

https://gwillem.gitlab.io/2019/01/17/adm...erability/

Reply







Users browsing this thread: