CVE-2010-5058

CMS Ariadna 1.1 - SQL Injection via detResolucion.php res_id Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2010-5058. PoCs published by Andrés Gómez.

AI-analyzed exploit summary This Perl script exploits a SQL injection vulnerability in CMS Ariadna 2009 by injecting a malicious SQL query into the 'tipodoc_id' parameter. It extracts administrator credentials from the database and displays them to the attacker.

Description

SQL injection vulnerability in detResolucion.php in CMS Ariadna 1.1 allows remote attackers to execute arbitrary SQL commands via the res_id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Exploits (1)

exploitdb WORKING POC
by Andrés Gómez · textwebappsphp
https://www.exploit-db.com/exploits/12301

This Perl script exploits a SQL injection vulnerability in CMS Ariadna 2009 by injecting a malicious SQL query into the 'tipodoc_id' parameter. It extracts administrator credentials from the database and displays them to the attacker.

Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: CMS Ariadna 2009
No auth needed
Prerequisites: A vulnerable instance of CMS Ariadna 2009 with exposed 'detResolucion.php' endpoint
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/39486
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/57945

Scores

EPSS 0.0101
EPSS Percentile 58.6%

Details

CWE
CWE-89
Status published
Products (1)
alephsystem/cms_ariadna 1.1
Published Nov 23, 2011
Tracked Since Feb 18, 2026