Exploitation Summary
EIP tracks 1 public exploit for CVE-2011-1556. PoCs published by AutoSec Tools.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Andy's PHP Knowledgebase Project 0.95.4, allowing arbitrary data extraction and potential PHP shell creation via UNION-based injection and INTO OUTFILE.
Description
SQL injection vulnerability in plugins/pdfClasses/pdfgen.php in Andy's PHP Knowledgebase (Aphpkb) 0.95.4 allows remote attackers to execute arbitrary SQL commands via the pdfa parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in Andy's PHP Knowledgebase Project 0.95.4, allowing arbitrary data extraction and potential PHP shell creation via UNION-based injection and INTO OUTFILE.