CVE-2009-1651
2daybiz Business Community Script - SQL Injection via mid Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-1651. PoCs published by TiGeR-Dz.
AI-analyzed exploit summary This exploit demonstrates an Add Admin functionality and a Remote Blind SQL Injection vulnerability in 2daybiz Business Community Script. The SQLi is executed via the 'mid' parameter in member_details.php, allowing unauthorized database queries.
Description
SQL injection vulnerability in admin/member_details.php in 2daybiz Business Community Script allows remote attackers to execute arbitrary SQL commands via the mid parameter.
Exploits (1)
This exploit demonstrates an Add Admin functionality and a Remote Blind SQL Injection vulnerability in 2daybiz Business Community Script. The SQLi is executed via the 'mid' parameter in member_details.php, allowing unauthorized database queries.