CVE-2011-0519
Gallarific PHP Photo Gallery script 2.1 - SQL Injection via gallery.php id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2011-0519. PoCs published by AtT4CKxT3rR0r1ST.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in the GALLARIFIC PHP Photo Gallery Script via the 'id' parameter in gallery.php. It allows an attacker to extract user credentials from the database using a UNION-based SQL injection.
Description
SQL injection vulnerability in gallery.php in Gallarific PHP Photo Gallery script 2.1 and possibly other versions allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in the GALLARIFIC PHP Photo Gallery Script via the 'id' parameter in gallery.php. It allows an attacker to extract user credentials from the database using a UNION-based SQL injection.