CVE-2005-1134
Serendipity <= 0.8 - SQL Injection via url_id or entry_id Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-1134. PoCs published by kre0n.
AI-analyzed exploit summary This exploit targets a SQL injection vulnerability in Serendipity 0.8beta4's exit.php. It extracts admin credentials (username and password hash) by injecting malicious SQL queries via the entry_id and url_id parameters.
Description
SQL injection vulnerability in exit.php for Serendipity 0.8 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) url_id or (2) entry_id parameters.
Exploits (1)
This exploit targets a SQL injection vulnerability in Serendipity 0.8beta4's exit.php. It extracts admin credentials (username and password hash) by injecting malicious SQL queries via the entry_id and url_id parameters.