Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-4797. PoCs published by KnocKout.
AI-analyzed exploit summary This exploit demonstrates an authentication bypass vulnerability in Flex Timesheet via SQL injection. By injecting a malformed username and password, an attacker can bypass authentication and gain unauthorized access.
Description
Multiple SQL injection vulnerabilities in the log-in form in Truworth Flex Timesheet allow remote attackers to execute arbitrary SQL commands via the (1) Username and (2) Password fields.
Exploits (1)
This exploit demonstrates an authentication bypass vulnerability in Flex Timesheet via SQL injection. By injecting a malformed username and password, an attacker can bypass authentication and gain unauthorized access.