CVE-2009-2779
ajsquare aj_matrix_dna - SQL Injection via id Parameter in productdetail Action
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-2779. PoCs published by v3n0m.
AI-analyzed exploit summary This exploit demonstrates SQL injection vulnerabilities in AJ Matrix DNA v3.1, allowing unauthorized extraction of admin and member credentials via crafted SQL queries. The PoC includes both error-based and blind SQLi techniques.
Description
SQL injection vulnerability in index.php in AJ Matrix DNA allows remote attackers to execute arbitrary SQL commands via the id parameter in a productdetail action.
Exploits (1)
This exploit demonstrates SQL injection vulnerabilities in AJ Matrix DNA v3.1, allowing unauthorized extraction of admin and member credentials via crafted SQL queries. The PoC includes both error-based and blind SQLi techniques.