NOMISEC-pizza-power/CVE-2024-32640

NOMISEC WORKING POC
Exploit for CVE-2024-32640 - MASA CMS <7.4.5-7.2.7 - SQL Injection
AI Analysis

This repository contains a functional Python script demonstrating a time-based blind SQL injection exploit for CVE-2024-32640, targeting MySQL databases. It includes both vulnerability detection and data extraction capabilities (e.g., database name, user).

Attack Type
SQLi
Complexity
moderate
Reliability
reliable
MITRE ATT&CK
T1505 - Server Software Component
Loading exploit code...
Download ZIP Password: eip
Source
Platform Nomisec
Type poc
Files 2
Stars 1
Forks 0
Last Push Nov 15, 2024
Authors
pizza-power
Vulnerability
CVE-2024-32640
MASA CMS <7.4.5-7.2.7 - SQL Injection
CRITICAL
CVSS 9.8