Exploitation Summary
EIP tracks 1 public exploit for CVE-2004-1821. PoCs published by Janek Vind.
AI-analyzed exploit summary The code describes multiple vulnerabilities in 4nAlbum 0.92, including SQL injection via the 'gid' parameter in 'modules.php', remote file inclusion, and XSS. It provides example URLs for exploiting the SQL injection to leak sensitive data.
Description
SQL injection vulnerability in 4nalbum 0.92 for PHP-Nuke 6.5 through 7.0 allows remote attackers to gain privileges or perform unauthorized database operations via the gid parameter.
Exploits (1)
The code describes multiple vulnerabilities in 4nAlbum 0.92, including SQL injection via the 'gid' parameter in 'modules.php', remote file inclusion, and XSS. It provides example URLs for exploiting the SQL injection to leak sensitive data.