CVE-2007-5490

Okul Otomasyon Portal 2.0 - SQL Injection via id Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2007-5490. PoCs published by dumenci.

AI-analyzed exploit summary This is a writeup describing a remote SQL injection vulnerability in Okul Otomasyon Portal v2.0. It provides a dork, injection address, and a sample SQL injection payload.

Description

SQL injection vulnerability in default.asp in Okul Otomasyon Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by dumenci · textwebappsphp
https://www.exploit-db.com/exploits/4539

This is a writeup describing a remote SQL injection vulnerability in Okul Otomasyon Portal v2.0. It provides a dork, injection address, and a sample SQL injection payload.

Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target: Okul Otomasyon Portal v2.0
No auth needed
Prerequisites: A vulnerable instance of Okul Otomasyon Portal v2.0
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/26094
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/4539
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/27268
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/37237

Scores

EPSS 0.0046
EPSS Percentile 64.4%

Details

CWE
CWE-89
Status published
Products (1)
okulumunsitesi/portal 2.0
Published Oct 17, 2007
Tracked Since Feb 18, 2026