CVE-2005-4016
Widget Property 1.1.19 - SQL Injection via property_id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-4016. PoCs published by r0t3d3Vil.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in Widget Press Widget Property, detailing multiple attack vectors via the 'property.php' script. It includes example URLs demonstrating how malicious input can be injected into various parameters.
Description
SQL injection vulnerability in Widget Property 1.1.19 allows remote attackers to execute arbitrary SQL commands via the (1) property_id, (2) zip_code, (3) property_type_id, (4) price, and (5) city_id parameters to property.php.
Exploits (1)
The provided text describes an SQL injection vulnerability in Widget Press Widget Property, detailing multiple attack vectors via the 'property.php' script. It includes example URLs demonstrating how malicious input can be injected into various parameters.