CVE-2014-10015
PHPJabbers Event Booking Calendar 2.0 - SQL Injection via cid Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2014-10015. PoCs published by HackXBack.
AI-analyzed exploit summary The exploit demonstrates multiple vulnerabilities in Event Booking Calendar V2.0, including blind SQL injection, CSRF, and XSS. It provides proof-of-concept examples for each vulnerability, including payloads and attack vectors.
Description
SQL injection vulnerability in load-calendar.php in PHPJabbers Event Booking Calendar 2.0 allows remote attackers to execute arbitrary SQL commands via the cid parameter.
Exploits (1)
The exploit demonstrates multiple vulnerabilities in Event Booking Calendar V2.0, including blind SQL injection, CSRF, and XSS. It provides proof-of-concept examples for each vulnerability, including payloads and attack vectors.