CVE-2007-1250
ANGEL Learning Management Suite 7.1 - SQL Injection via id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-1250. PoCs published by Craig Heffner.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in Angel Learning Management Suite 7.1, allowing unauthenticated users to extract sensitive data such as usernames, passwords, and other database records via crafted HTTP requests.
Description
SQL injection vulnerability in section/default.asp in ANGEL Learning Management Suite (LMS) 7.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in Angel Learning Management Suite 7.1, allowing unauthenticated users to extract sensitive data such as usernames, passwords, and other database records via crafted HTTP requests.