CVE-2005-4034
Web4Future eDating Professional 5 - SQL Injection via Multiple Parameters
Title source: llmExploitation Summary
EIP tracks 4 public exploits for CVE-2005-4034. PoCs published by r0t.
AI-analyzed exploit summary The provided text describes SQL injection vulnerabilities in eDating Professional versions 5 and prior. It outlines vulnerable parameters in specific URLs but does not include executable exploit code.
Description
Multiple SQL injection vulnerabilities in Web4Future eDating Professional 5 allow remote attackers to execute arbitrary SQL commands via the (1) s, (2) pg, and (3) sortb parameters to (a) index.php; (4) cid parameter to (b) gift.php and (c) fq.php; and (5) cat parameter to (d) articles.php.
Exploits (4)
The provided text describes SQL injection vulnerabilities in eDating Professional versions 5 and prior. It outlines vulnerable parameters in specific URLs but does not include executable exploit code.
The provided text describes a SQL injection vulnerability in eDating Professional versions 5 and prior. It outlines the vulnerability's cause and potential impact but does not include functional exploit code.
The provided text describes a SQL injection vulnerability in eDating Professional versions 5 and prior. It outlines the vulnerability's cause and potential impact but does not include executable exploit code.
The provided text describes SQL injection vulnerabilities in eDating Professional versions 5 and prior, detailing vulnerable parameters in the 'articles.php' page. It does not contain executable exploit code but serves as a technical advisory.