Points: 25 Description: Nines9 and evinyatar found an XSS/CSRF vulnerability in realistic 11 that allowed them to edit user profiles, send PMs, submit articles and bug reports as members.
# 2
Points: 100 Description: evinyatar and Nines9 found an SQL injection in Realistic 8, which allowed them to inject arbitrary SQL code.
This site is the collective work of the
HackThisSite staff. Please don't reproduce in part or whole without permission.
Page Generated: Sat, 21 Nov 2009 21:33:47 +0000 Exec:
41 Page loaded in 0.30948 seconds! Current Code Revision: 79-Stable