Exploitation Summary
EIP tracks 1 public exploit for CVE-2011-5222. PoCs published by Lazmania61.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in Flirt-Projekt 4.8, where the 'kontaktid' parameter in the URL is not properly sanitized. The example URL demonstrates a basic SQLi attempt but lacks executable exploit code.
Description
SQL injection vulnerability in rub2_w.php in PHP Flirt-Projekt 4.8 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the rub parameter.
Exploits (1)
The provided text describes an SQL injection vulnerability in Flirt-Projekt 4.8, where the 'kontaktid' parameter in the URL is not properly sanitized. The example URL demonstrates a basic SQLi attempt but lacks executable exploit code.