Exploitation Summary
EIP tracks 1 public exploit for CVE-2005-4198. PoCs published by syst3m_f4ult.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in Netref, where the 'cat' parameter in the URL is not properly sanitized. This allows attackers to inject malicious SQL queries, potentially compromising the application or underlying database.
Description
SQL injection vulnerability in index.php in Netref 3.0 allows remote attackers to execute arbitrary SQL commands via the cat parameter. NOTE: the provenance of this issue is unknown; the details were obtained solely from third party sources.
Exploits (1)
The provided text describes an SQL injection vulnerability in Netref, where the 'cat' parameter in the URL is not properly sanitized. This allows attackers to inject malicious SQL queries, potentially compromising the application or underlying database.