CVE-2007-4846
Webace-Linkscript 1.3 SE - SQL Injection via start.php id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-4846. PoCs published by k1tk4t.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Webace-Linkscript V1.3 Special Edition. The vulnerability arises from improper filtering of the 'id' parameter in the 'rubrik.php' file, allowing attackers to manipulate SQL queries via the browser.
Description
SQL injection vulnerability in start.php in Webace-Linkscript (wls) 1.3 Special Edition (SE) allows remote attackers to execute arbitrary SQL commands via the id parameter in a rubrik go action.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in Webace-Linkscript V1.3 Special Edition. The vulnerability arises from improper filtering of the 'id' parameter in the 'rubrik.php' file, allowing attackers to manipulate SQL queries via the browser.