Exploitation Summary
EIP tracks 1 public exploit for CVE-2012-0913. PoCs published by v3n0m.
AI-analyzed exploit summary This exploit demonstrates an authentication bypass vulnerability in ICTimeAttendance via SQL injection. The provided credentials 'admin' and '1'or'1'='1' bypass the login mechanism by exploiting improper input validation.
Description
SQL injection vulnerability in checklogin.aspx in ICloudCenter ICTimeAttendance 1.0 allows remote attackers to execute arbitrary SQL commands via the passw parameter. NOTE: Some of these details are obtained from third party information.
Exploits (1)
This exploit demonstrates an authentication bypass vulnerability in ICTimeAttendance via SQL injection. The provided credentials 'admin' and '1'or'1'='1' bypass the login mechanism by exploiting improper input validation.