What application are you talking about? On 5 May 2006 Mster-X@xxxxxxxxxxx wrote: > ******************** > By: Mr-X > Email: Mster-X@xxxxxxxxxxx > Subject: modules name(Downloads)SQL Injection > ******************** > > example:- > /modules.php?/modules.php?name=Downloads&d_op=viewdownload&cid=[SQL] > > ******************** > -- Paul Laudanski, Microsoft MVP Windows-Security Submit phish: www.castlecops.com/pirt [de] http://de.castlecops.com [en] http://castlecops.com [wiki] http://wiki.castlecops.com