CVE-2010-2610

2daybiz Job Site Script - SQL Injection via jid, job_iid, or left_cat Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2010-2610. PoCs published by Sangteamtham.

AI-analyzed exploit summary This is a writeup describing SQL injection vulnerabilities in 2daybiz Job site Script. It provides URLs with injection points but does not include executable exploit code.

Description

Multiple SQL injection vulnerabilities in 2daybiz Job Site Script allow remote attackers to execute arbitrary SQL commands via the (1) jid parameter to view_current_job.php, (2) job_iid parameter to show_search_more.php, and (3) left_cat parameter to show_search_result.php.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Sangteamtham · textwebappsphp
https://www.exploit-db.com/exploits/14025

This is a writeup describing SQL injection vulnerabilities in 2daybiz Job site Script. It provides URLs with injection points but does not include executable exploit code.

Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target: 2daybiz Job site Script
No auth needed
Prerequisites: access to the vulnerable web application
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (7)

Core 7
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/14025
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/65714
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/65715
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/65716
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/40301
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/59733
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/41123

Scores

EPSS 0.0119
EPSS Percentile 63.8%

Details

CWE
CWE-89
Status published
Products (1)
2daybiz/job_site_script
Published Jul 02, 2010
Tracked Since Feb 18, 2026