Exploitation Summary
EIP tracks 1 public exploit for CVE-2014-4194. PoCs published by Filippos Mastrogiannis.
AI-analyzed exploit summary The exploit demonstrates a SQL injection vulnerability in ZeroCMS v1.0 via the 'article_id' POST parameter in 'zero_transact_article.php'. It includes a proof-of-concept payload and sqlmap output confirming the vulnerability.
Description
SQL injection vulnerability in zero_transact_article.php in ZeroCMS 1.0 allows remote attackers to execute arbitrary SQL commands via the article_id parameter in a Submit Comment action.
Exploits (1)
The exploit demonstrates a SQL injection vulnerability in ZeroCMS v1.0 via the 'article_id' POST parameter in 'zero_transact_article.php'. It includes a proof-of-concept payload and sqlmap output confirming the vulnerability.