CVE-2009-3117
Snow Hall Silurus System 1.0 - SQL Injection via ID Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-3117. PoCs published by Mr.SQL.
AI-analyzed exploit summary This exploit demonstrates a remote SQL injection vulnerability in Silurus Classifieds System via the 'category.php' ID parameter. It allows an attacker to extract sensitive information such as usernames and passwords from the 'Profiles' and 'Admins' tables.
Description
SQL injection vulnerability in category.php in Snow Hall Silurus System 1.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter.
Exploits (1)
This exploit demonstrates a remote SQL injection vulnerability in Silurus Classifieds System via the 'category.php' ID parameter. It allows an attacker to extract sensitive information such as usernames and passwords from the 'Profiles' and 'Admins' tables.