Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-0295. PoCs published by fuzion.
AI-analyzed exploit summary This exploit targets a blind SQL injection vulnerability in ITLPoll v2.7 Stable2. It brute-forces the username or password by leveraging time-based SQL injection to extract credentials from the database.
Description
SQL injection vulnerability in index.php in Information Technology Light Poll Information (ITLPoll) 2.7 Stable 2, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This exploit targets a blind SQL injection vulnerability in ITLPoll v2.7 Stable2. It brute-forces the username or password by leveraging time-based SQL injection to extract credentials from the database.