CVE-2007-6366
SineCMS < 2.3.4 - SQL Injection via Calendar and Guestbook Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-6366. PoCs published by KiNgOfThEwOrLd.
AI-analyzed exploit summary The exploit demonstrates SQL injection in SineCMS <= 2.3.4 via the 'id' parameter in the Calendar module, allowing an attacker to extract sensitive data (e.g., passwords) from the database. Additional SQL injection vectors in the admin panel and a persistent XSS vulnerability in the guestbook are also described.
Description
Multiple SQL injection vulnerabilities in SineCMS 2.3.4 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to mods/Calendar/index.php, accessed through a Calendar info action to mods.php; the id parameter to admin/mods_adm.php in a (2) Guestbook modifica or (3) Calendar modify action; or the (4) mese or (5) anno parameter to admin/mods_adm.php in a Calendar action. NOTE: the component for vectors 2 through 5 might be limited to administrators.
Exploits (1)
The exploit demonstrates SQL injection in SineCMS <= 2.3.4 via the 'id' parameter in the Calendar module, allowing an attacker to extract sensitive data (e.g., passwords) from the database. Additional SQL injection vectors in the admin panel and a persistent XSS vulnerability in the guestbook are also described.