CVE-2009-0531
A Better Member-Based ASP Photo Gallery <1.2 - SQL Injection
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-0531. PoCs published by BackDoor.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in 'A Better Member-Based ASP Photo Gallery' by manipulating the 'entry' parameter in the 'view.asp' script. The PoC uses a UNION-based SQLi to extract data from the 'photos' table.
Description
SQL injection vulnerability in gallery/view.asp in A Better Member-Based ASP Photo Gallery before 1.2 allows remote attackers to execute arbitrary SQL commands via the entry parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in 'A Better Member-Based ASP Photo Gallery' by manipulating the 'entry' parameter in the 'view.asp' script. The PoC uses a UNION-based SQLi to extract data from the 'photos' table.