CVE-2005-2009
Ublog Reload 1.0.5 - SQL Injection via ci, d, m, or bi Parameter
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2005-2009. PoCs published by Dedi Dwianto.
AI-analyzed exploit summary The provided text describes SQL injection vulnerabilities in Ublog Reload due to improper input sanitization. It includes example URLs demonstrating the vulnerability but lacks executable exploit code.
Description
Multiple SQL injection vulnerabilities in Ublog Reload 1.0.5 allow remote attackers to execute arbitrary SQL commands via the (1) ci, (2) d, or (3) m parameter to index.asp, or the (4) bi parameter to blog_comment.asp.
Exploits (2)
The provided text describes SQL injection vulnerabilities in Ublog Reload due to improper input sanitization. It includes example URLs demonstrating the vulnerability but lacks executable exploit code.
The provided text describes SQL injection vulnerabilities in Ublog Reload due to improper input sanitization. It includes an example URL demonstrating the vulnerability but lacks executable exploit code.