Exploitation Summary
EIP tracks 1 public exploit for CVE-2012-0983. PoCs published by Red Security TEAM.
AI-analyzed exploit summary This is a writeup describing a Blind SQL Injection vulnerability in Ez Album. It provides the vulnerable URL parameter but does not include functional exploit code or payloads.
Description
SQL injection vulnerability in Scriptsez.net Ez Album allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action to index.php.
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by Red Security TEAM · textwebappsphp
https://www.exploit-db.com/exploits/18438
This is a writeup describing a Blind SQL Injection vulnerability in Ez Album. It provides the vulnerable URL parameter but does not include functional exploit code or payloads.
Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target:
Ez Album (version unspecified)
No auth needed
Prerequisites:
Access to the vulnerable web application
devstral-2 · analyzed Feb 16, 2026
Full analysis →
References (3)
Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/72809
Exploit, Third Party Advisory exploit
x_refsource_exploit-db
http://www.exploit-db.com/exploits/18438
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/51781
Scores
EPSS
0.0114
EPSS Percentile
62.4%
Details
CWE
CWE-89
Status
published
Products (1)
scriptsez/ez_album
Published
Feb 02, 2012
Tracked Since
Feb 18, 2026