Exploitation Summary
EIP tracks 2 public exploits for CVE-2007-6559. PoCs published by malibu.r.
AI-analyzed exploit summary The provided text describes multiple input-validation vulnerabilities in Logaholic, including SQL injection, XSS, and HTML injection, due to insufficient sanitization of user-supplied data. It includes a generic example URL for SQL injection but lacks executable exploit code.
Description
Multiple SQL injection vulnerabilities in Logaholic before 2.0 RC8 allow remote attackers to execute arbitrary SQL commands via (1) the from parameter to index.php or (2) the page parameter to update.php.
Exploits (2)
The provided text describes multiple input-validation vulnerabilities in Logaholic, including SQL injection, XSS, and HTML injection, due to insufficient sanitization of user-supplied data. It includes a generic example URL for SQL injection but lacks executable exploit code.
The provided text describes multiple input-validation vulnerabilities in Logaholic, including SQL injection, XSS, and HTML injection. It includes a generic example URL demonstrating SQL injection but lacks executable exploit code.