CVE-2007-3909
Bandersnatch 0.4 - SQL Injection via Date and Limit Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-3909. PoCs published by Tim Brown.
AI-analyzed exploit summary The provided text describes SQL injection and HTML injection vulnerabilities in Bandersnatch 0.4, with example URLs demonstrating unsanitized input parameters. No actual exploit code is present, only a vulnerability description.
Description
Multiple SQL injection vulnerabilities in Bandersnatch 0.4 allow remote attackers to execute arbitrary SQL commands via the (1) date and (2) limit parameters to index.php, and other unspecified vectors.
Exploits (1)
The provided text describes SQL injection and HTML injection vulnerabilities in Bandersnatch 0.4, with example URLs demonstrating unsanitized input parameters. No actual exploit code is present, only a vulnerability description.