CVE-2010-1499
MusicBox 3.3 - SQL Injection via Genre Artists ID Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-1499. PoCs published by Ctacok.
AI-analyzed exploit summary This exploit targets a SQL injection vulnerability in MusicBox v3.3, specifically in the 'genre_artists.php' file. It extracts admin credentials (userid, username, password, email, and userlevel) via a UNION-based SQL injection attack.
Description
SQL injection vulnerability in genre_artists.php in MusicBox 3.3 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This exploit targets a SQL injection vulnerability in MusicBox v3.3, specifically in the 'genre_artists.php' file. It extracts admin credentials (userid, username, password, email, and userlevel) via a UNION-based SQL injection attack.