CVE-2009-2929

TGS Content Management 0.x - SQL Injection via Multiple Parameters

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2009-2929. PoCs published by []ViZiOn.

AI-analyzed exploit summary This is a detailed technical writeup describing multiple vulnerabilities in TGS CMS, including XSS, SQL injection, blind SQL/XPath injection, and source code disclosure. It provides affected endpoints, examples, and mitigation strategies but does not include functional exploit code.

Description

Multiple SQL injection vulnerabilities in TGS Content Management 0.x allow remote attackers to execute arbitrary SQL commands via the (1) tgs_language_id, (2) tpl_dir, (3) referer, (4) user-agent, (5) site, (6) option, (7) db_optimization, (8) owner, (9) admin_email, (10) default_language, and (11) db_host parameters to cms/index.php; and the (12) cmd, (13) s_dir, (14) minutes, (15) s_mask, (16) test3_mp, (17) test15_file1, (18) submit, (19) brute_method, (20) ftp_server_port, (21) userfile14, (22) subj, (23) mysql_l, (24) action, and (25) userfile1 parameters to cms/frontpage_ception.php. NOTE: some of these parameters may be applicable only in nonstandard versions of the product, and cms/frontpage_ception.php may be cms/frontpage_caption.php in all released versions.

Exploits (1)

exploitdb WRITEUP VERIFIED
by []ViZiOn · textwebappsphp
https://www.exploit-db.com/exploits/9434

This is a detailed technical writeup describing multiple vulnerabilities in TGS CMS, including XSS, SQL injection, blind SQL/XPath injection, and source code disclosure. It provides affected endpoints, examples, and mitigation strategies but does not include functional exploit code.

Classification
Writeup 90%
Attack Type
Xss | Sqli | Info Leak
Complexity
Trivial
Reliability
Theoretical
Target: TGS CMS
No auth needed
Prerequisites: Access to the vulnerable TGS CMS instance
devstral-2 · analyzed Feb 18, 2026 Full analysis →

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/52468
Exploit, Third Party Advisory exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/9434

Scores

EPSS 0.0025
EPSS Percentile 48.6%

Details

CWE
CWE-89
Status published
Products (6)
tgs-cms/tgs_content_management 0.1.6
tgs-cms/tgs_content_management 0.1.7
tgs-cms/tgs_content_management 0.2.0
tgs-cms/tgs_content_management 0.2.5 (3 CPE variants)
tgs-cms/tgs_content_management 0.3.0
tgs-cms/tgs_content_management 0.3.2 (2 CPE variants)
Published Aug 21, 2009
Tracked Since Feb 18, 2026