Points: 25 Description: Nines9 and evinyatar found an XSS/CSRF vulnerability in realistic 11 that allowed them to edit user profiles, send PMs, submit articles and bug reports as members.
# 2
Points: 100 Description: evinyatar and Nines9 found an SQL injection in Realistic 8, which allowed them to inject arbitrary SQL code.
Lectures
No Lectures Given
Comments temporarily disabled.
This site is the collective work of the
HackThisSite staff. Please don't reproduce in part or whole without permission.
Page Generated: Sat, 07 Nov 2009 22:19:18 +0000 Exec:
38 Page loaded in 0.07998 seconds! Current Code Revision: 75-Stable