CVE-2010-5020

NetArt Media iBoutique 4.0 - SQL Injection

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2010-5020. PoCs published by L0rd CrusAd3r.

AI-analyzed exploit summary This is a writeup describing SQL injection and XSS vulnerabilities in iBoutique version 4. It provides demo URLs but lacks actual exploit code or payloads.

Description

SQL injection vulnerability in index.php in NetArt Media iBoutique 4.0 allows remote attackers to execute arbitrary SQL commands via the page parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by L0rd CrusAd3r · textwebappsphp
https://www.exploit-db.com/exploits/13945

This is a writeup describing SQL injection and XSS vulnerabilities in iBoutique version 4. It provides demo URLs but lacks actual exploit code or payloads.

Classification
Writeup 90%
Attack Type
Sqli | Xss
Complexity
Trivial
Reliability
Theoretical
Target: iBoutique version 4
No auth needed
Prerequisites: Access to the vulnerable web application
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/41014
Exploit, Third Party Advisory exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/13945
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/31871

Scores

EPSS 0.0100
EPSS Percentile 58.4%

Details

CWE
CWE-89
Status published
Products (1)
netartmedia/iboutique 4.0
Published Nov 02, 2011
Tracked Since Feb 18, 2026