CVE-2002-2304
MyPHPLinks 2.1.9 and 2.2.0 - SQL Injection via idsession Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2002-2304. PoCs published by frog.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in MyPHPLinks by manipulating the 'idsession' parameter to bypass administrator authentication. The attack leverages improper input validation to gain unauthorized access.
Description
SQL injection vulnerability in admin/auth/checksession.php in MyPHPLinks 2.1.9 and 2.2.0 allows remote attackers to execute arbitrary SQL commands via the idsession parameter.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in MyPHPLinks by manipulating the 'idsession' parameter to bypass administrator authentication. The attack leverages improper input validation to gain unauthorized access.