Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-4970. PoCs published by ADEO Security.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in WikiWebHelp's getpage.php, where user input is not properly sanitized, allowing an attacker to extract sensitive information such as usernames and passwords from the database.
Description
SQL injection vulnerability in handlers/getpage.php in Wiki Web Help 0.28 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in WikiWebHelp's getpage.php, where user input is not properly sanitized, allowing an attacker to extract sensitive information such as usernames and passwords from the database.