CVE-2005-3826
ezyhelpdesk 1.0 - SQL Injection via edit_id, faq_id, c_id, and Search Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-3826. PoCs published by r0t.
AI-analyzed exploit summary The provided text describes SQL injection vulnerabilities in Ezyhelpdesk version 1.0 and earlier, detailing vulnerable parameters and example URLs. It does not contain executable exploit code but serves as a technical advisory.
Description
Multiple SQL injection vulnerabilities in Ezyhelpdesk 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) edit_id, (2) faq_id, and (3) c_id parameters in a query string, and (4) the search engine, possibly involving the search_string parameter.
Exploits (1)
The provided text describes SQL injection vulnerabilities in Ezyhelpdesk version 1.0 and earlier, detailing vulnerable parameters and example URLs. It does not contain executable exploit code but serves as a technical advisory.