Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-4899. PoCs published by MustLive.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in CMS WebManager-Pro, where user-supplied input is not properly sanitized before being used in an SQL query. The example URL demonstrates a basic SQLi test to check the database version.
Description
SQL injection vulnerability in c.php in CMS WebManager-Pro before 8.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
The provided text describes an SQL injection vulnerability in CMS WebManager-Pro, where user-supplied input is not properly sanitized before being used in an SQL query. The example URL demonstrates a basic SQLi test to check the database version.