CVE-2013-6873
Testa Online Test Management System 2.0.0.2 - SQL Injection via test_id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2013-6873. PoCs published by Ashiyane Digital Security Team.
AI-analyzed exploit summary This exploit demonstrates SQL injection vulnerabilities in Testa OTMS 2.0.0.2 by manipulating the 'test_id' parameter to extract sensitive information from the database. The provided URL example uses a UNION-based SQL injection to retrieve user credentials.
Description
SQL injection vulnerability in Testa Online Test Management System (OTMS) 2.0.0.2 allows remote attackers to execute arbitrary SQL commands via the test_id parameter.
Exploits (1)
This exploit demonstrates SQL injection vulnerabilities in Testa OTMS 2.0.0.2 by manipulating the 'test_id' parameter to extract sensitive information from the database. The provided URL example uses a UNION-based SQL injection to retrieve user credentials.