CVE-2014-8295
Bacula-Web 5.2.10 - SQL Injection via Joblogs JobID Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2014-8295. PoCs published by wishnusakti.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Bacula-web 5.2.10 via the 'jobid' parameter in joblogs.php. The PoC includes sqlmap output showing successful exploitation with boolean-based blind, error-based, and UNION query techniques.
Description
SQL injection vulnerability in joblogs.php in Bacula-Web 5.2.10 allows remote attackers to execute arbitrary SQL commands via the jobid parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in Bacula-web 5.2.10 via the 'jobid' parameter in joblogs.php. The PoC includes sqlmap output showing successful exploitation with boolean-based blind, error-based, and UNION query techniques.