Exploitation Summary
EIP tracks 2 public exploits for CVE-2007-2817. PoCs published by Mehmet Ince.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Ol Bookmarks Manager 0.7.4, allowing remote attackers to extract sensitive information (e.g., passwords, logins) from the database via a crafted URL parameter.
Description
SQL injection vulnerability in read/index.php in ol'bookmarks 0.7.4 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (2)
This exploit demonstrates a SQL injection vulnerability in Ol Bookmarks Manager 0.7.4, allowing remote attackers to extract sensitive information (e.g., passwords, logins) from the database via a crafted URL parameter.
This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Olbookmarks <= 0.7.4. The vulnerability allows an attacker to include arbitrary remote files via the 'root' parameter in multiple theme-related PHP scripts, potentially leading to remote code execution.