Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-2365. PoCs published by R3d-D3V!L.
AI-analyzed exploit summary This exploit demonstrates an authentication bypass via SQL injection in GalleryPal FE v1.5. The PoC provides credentials to bypass login by injecting a tautology into the password field.
Description
SQL injection vulnerability in login.asp in DataCheck Solutions GalleryPal FE 1.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
This exploit demonstrates an authentication bypass via SQL injection in GalleryPal FE v1.5. The PoC provides credentials to bypass login by injecting a tautology into the password field.