# # Title : OneForum SQL Injection Vulnerability # Author : Red Security TEAM # Date : 22/02/2012 # Risk : High # Software : http://www.onescripts.de/ # Download : http://www.onescripts.de/download/oneforum.zip # Tested On : CentOS # Contact : Info [ at ] RedSecurity [ . ] COM # Home : http://RedSecurity.COM # # Exploit : # http://server/topic.php?id=[SQLi] #