CVE-2010-2342

DMXReady Online Notebook Manager 1.0 - SQL Injection via ItemID Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2010-2342. PoCs published by L0rd CrusAd3r.

AI-analyzed exploit summary This is a writeup describing a SQL injection vulnerability in DMXReady Online Notebook Manager version 1.0. It provides details about the vulnerability, including a demo URL and default admin credentials, but does not include actual exploit code.

Description

SQL injection vulnerability in onlinenotebookmanager.asp in DMXReady Online Notebook Manager 1.0 allows remote attackers to execute arbitrary SQL commands via the ItemID parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by L0rd CrusAd3r · textwebappsasp
https://www.exploit-db.com/exploits/13793

This is a writeup describing a SQL injection vulnerability in DMXReady Online Notebook Manager version 1.0. It provides details about the vulnerability, including a demo URL and default admin credentials, but does not include actual exploit code.

Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target: DMXReady Online Notebook Manager 1.0
No auth needed
Prerequisites: Access to the vulnerable application URL
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/40692
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/13793

Scores

EPSS 0.0091
EPSS Percentile 55.2%

Details

CWE
CWE-89
Status published
Products (1)
dmxready/online_notebook_manager 1.0
Published Jun 21, 2010
Tracked Since Feb 18, 2026