Exploitation Summary
EIP tracks 1 public exploit for CVE-2015-3314. PoCs published by Hannes Trunde.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in the WordPress Tune Library Plugin version 1.5.4. The vulnerability allows an attacker to extract sensitive information such as the database version, current user, and database name by manipulating the 'artistletter' parameter.
Description
SQL injection vulnerability in WordPress Tune Library plugin before 1.5.5.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in the WordPress Tune Library Plugin version 1.5.4. The vulnerability allows an attacker to extract sensitive information such as the database version, current user, and database name by manipulating the 'artistletter' parameter.
References (6)
Scores
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H