CVE-2005-4234
EncapsGallery < 1.0.0 - SQL Injection via Gallery ID Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-4234. PoCs published by r0t3d3Vil.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in EncapsGallery, where the 'id' parameter in the URL is not properly sanitized. This allows attackers to manipulate SQL queries, potentially leading to data disclosure or modification.
Description
SQL injection vulnerability in gallery.php in EncapsGallery 1.0.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
The provided text describes an SQL injection vulnerability in EncapsGallery, where the 'id' parameter in the URL is not properly sanitized. This allows attackers to manipulate SQL queries, potentially leading to data disclosure or modification.