[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: An Sql Injection in the Debian's website


On Thu, Sep 24, 2009 at 05:22:39AM +0000, zaakoul wrote:
> there is an sql injection in ur website, from here:
> http://sponsors.debian.net/viewpkg.php?id=9%20union%20select%201,database%28%29,version%28%29,user%28%29,5,6,7,8,9,10,11

Thanks for your report.
As sponsors.debian.net is an unofficial service not handled by WWW Team,
I've CCed Neil (who is the contact displayed on

Best regards.

Simon Paillard

Reply to: