CVE-2009-2776
Smart ASP Survey - SQL Injection via showresult.asp catid Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-2776. PoCs published by Moudi.
AI-analyzed exploit summary The provided text describes a SQL injection vulnerability in Smart ASP Survey, where the 'catid' parameter in 'showresult.asp' is not properly sanitized. This allows attackers to manipulate SQL queries, potentially leading to unauthorized data access or further exploitation.
Description
SQL injection vulnerability in showresult.asp in Smart ASP Survey allows remote attackers to execute arbitrary SQL commands via the catid parameter.
Exploits (1)
The provided text describes a SQL injection vulnerability in Smart ASP Survey, where the 'catid' parameter in 'showresult.asp' is not properly sanitized. This allows attackers to manipulate SQL queries, potentially leading to unauthorized data access or further exploitation.