CVE-2014-100031
Ganesha Digital Library 4.2 - SQL Injection via id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2014-100031. PoCs published by ByEge.
AI-analyzed exploit summary This exploit demonstrates multiple vulnerabilities in GDL 4.2, including directory traversal, SQL injection, blind SQL injection, and XSS. It provides proof-of-concept URLs and code snippets to exploit these vulnerabilities.
Description
Multiple SQL injection vulnerabilities in Ganesha Digital Library (GDL) 4.2 allow remote attackers to execute arbitrary SQL commands via the id parameter in (1) download.php or (2) main.php.
Exploits (1)
This exploit demonstrates multiple vulnerabilities in GDL 4.2, including directory traversal, SQL injection, blind SQL injection, and XSS. It provides proof-of-concept URLs and code snippets to exploit these vulnerabilities.