CVE-2005-4478
papoo < 2.1.2 - SQL Injection via menuid forumid or reporeid_print Parameter
Title source: llmExploitation Summary
EIP tracks 3 public exploits for CVE-2005-4478. PoCs published by r0t3d3Vil.
AI-analyzed exploit summary The provided text describes SQL injection vulnerabilities in Papoo version 2.1.2, detailing vulnerable parameters in the print.php file. It includes example URLs demonstrating the injection points but lacks executable exploit code.
Description
Multiple SQL injection vulnerabilities in Papoo 2.1.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) menuid parameter to (a) index.php and (b) guestbook.php, and the (2) forumid and (3) reporeid_print parameters to (c) print.php.
Exploits (3)
The provided text describes SQL injection vulnerabilities in Papoo version 2.1.2, detailing vulnerable parameters in the print.php file. It includes example URLs demonstrating the injection points but lacks executable exploit code.
This is a vulnerability writeup describing SQL injection flaws in Papoo version 2.1.2. It outlines the issue but does not provide executable exploit code.
The provided text describes SQL injection vulnerabilities in Papoo version 2.1.2, specifically in the 'guestbook.php' file via the 'menuid' parameter. It lacks executable exploit code but outlines the vulnerability and potential impact.