CVE-2005-3911
BosDates 4.0 - SQL Injection via Year and Category Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-3911. PoCs published by r0t.
AI-analyzed exploit summary The provided text describes SQL injection vulnerabilities in BosDates 4.0 and prior, detailing vulnerable parameters in the calendar.php file. It includes example URLs demonstrating the injection points but lacks executable exploit code.
Description
Multiple SQL injection vulnerabilities in calendar.php in BosDates 4.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) year and (2) category parameters.
Exploits (1)
The provided text describes SQL injection vulnerabilities in BosDates 4.0 and prior, detailing vulnerable parameters in the calendar.php file. It includes example URLs demonstrating the injection points but lacks executable exploit code.