CVE-2014-5081
CRITICALsphider < 1.3.6, sphider-pro < 3.2, sphider-plus < 3.2 - Authentication Bypass
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2014-5081. PoCs published by Shayan S.
AI-analyzed exploit summary The exploit demonstrates multiple vulnerabilities in Sphider Search Engine, including authentication bypass, SQL injection, and remote code execution via unsanitized input in configuration files. It provides proof-of-concept commands for each vulnerability.
Description
sphider prior to 1.3.6, sphider-pro prior to 3.2, and sphider-plus prior to 3.2 allow authentication bypass
Exploits (1)
The exploit demonstrates multiple vulnerabilities in Sphider Search Engine, including authentication bypass, SQL injection, and remote code execution via unsanitized input in configuration files. It provides proof-of-concept commands for each vulnerability.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H