CVE-2010-2623

Internet DM Specialist Bed and Breakfast - SQL Injection via pp_id Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2010-2623. PoCs published by JaMbA.

AI-analyzed exploit summary This is a basic writeup describing a SQL injection vulnerability in the Specialist Bed and Breakfast website script. It provides a URL with an injectable parameter but lacks actual exploit code or payload details.

Description

SQL injection vulnerability in pages.php in Internet DM Specialist Bed and Breakfast allows remote attackers to execute arbitrary SQL commands via the pp_id parameter.

Exploits (1)

exploitdb WRITEUP
by JaMbA · textwebappsphp
https://www.exploit-db.com/exploits/14144

This is a basic writeup describing a SQL injection vulnerability in the Specialist Bed and Breakfast website script. It provides a URL with an injectable parameter but lacks actual exploit code or payload details.

Classification
Writeup 80%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target: Specialist Bed and Breakfast website script
No auth needed
Prerequisites: access to the vulnerable URL
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (4)

Core 4
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/41275
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2010/1677
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/59964
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/14144

Scores

EPSS 0.0097
EPSS Percentile 57.3%

Details

CWE
CWE-89
Status published
Products (1)
internetdm/bed_and_breakfast
Published Jul 02, 2010
Tracked Since Feb 18, 2026