Exploitation Summary
EIP tracks 1 public exploit for CVE-2012-5894.
AI-analyzed exploit summary The document details multiple XSS vulnerabilities in Havalite CMS v1.0.4, including persistent and non-persistent types. It provides technical descriptions, vulnerable modules, and proof-of-concept URLs but does not include functional exploit code.
Description
SQL injection vulnerability in hava_post.php in Havalite CMS 1.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the postId parameter.
Exploits (1)
The document details multiple XSS vulnerabilities in Havalite CMS v1.0.4, including persistent and non-persistent types. It provides technical descriptions, vulnerable modules, and proof-of-concept URLs but does not include functional exploit code.