Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-1316. PoCs published by DSecRG.
AI-analyzed exploit summary The advisory details multiple vulnerabilities in AbleSpace 1.0, including blind SQL injection in events_view.php and events_clndr_view.php, stored XSS in blogs_full.php, and reflected XSS in groups_profile.php and adv_cat.php. It provides example payloads but no executable exploit code.
Description
Multiple SQL injection vulnerabilities in AbleSpace 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) eid parameter to events_view.php and the (2) id parameter to events_clndr_view.php.
Exploits (1)
The advisory details multiple vulnerabilities in AbleSpace 1.0, including blind SQL injection in events_view.php and events_clndr_view.php, stored XSS in blogs_full.php, and reflected XSS in groups_profile.php and adv_cat.php. It provides example payloads but no executable exploit code.