Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-1051.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Audistats 1.3 or lower via the 'mday' parameter. The provided payload (-666+union+all+select+@@version,user()--) extracts database version and user information.
Description
Multiple SQL injection vulnerabilities in index.php in AudiStat 1.3 allow remote attackers to execute arbitrary SQL commands via the (1) year and (2) month parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in Audistats 1.3 or lower via the 'mday' parameter. The provided payload (-666+union+all+select+@@version,user()--) extracts database version and user information.