Exploitation Summary
EIP tracks 1 public exploit for CVE-2004-1402. PoCs published by Shervin Khaleghjou.
AI-analyzed exploit summary The provided text describes a SQL injection vulnerability in iWebNegar, where user-supplied URI parameters are not sufficiently sanitized. It outlines the potential impact but does not include functional exploit code.
Description
SQL injection vulnerability in iWebNegar allows remote attackers to execute arbitrary SQL commands via (1) the string parameter for index.php, (2) comments.php, or (3) the administrator login page.
Exploits (1)
The provided text describes a SQL injection vulnerability in iWebNegar, where user-supplied URI parameters are not sufficiently sanitized. It outlines the potential impact but does not include functional exploit code.