CVE-2015-5148
LivelyCart 1.2.0 - SQL Injection via Search Query Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2015-5148. PoCs published by Manish Tanwar.
AI-analyzed exploit summary The provided text describes a SQL injection vulnerability in Lively Cart 1.2.0, specifically in the 'search_query' GET parameter. It includes a proof-of-concept URL but no actual exploit code.
Description
SQL injection vulnerability in LivelyCart 1.2.0 allows remote attackers to execute arbitrary SQL commands via the search_query parameter to product/search.
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by Manish Tanwar · textwebappsmultiple
https://www.exploit-db.com/exploits/37325
The provided text describes a SQL injection vulnerability in Lively Cart 1.2.0, specifically in the 'search_query' GET parameter. It includes a proof-of-concept URL but no actual exploit code.
Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target:
Lively Cart 1.2.0
No auth needed
Prerequisites:
Access to the vulnerable web application
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026
Full analysis →
References (1)
Core 1
Core References
Exploit exploit
x_refsource_exploit-db
https://www.exploit-db.com/exploits/37325/
Scores
EPSS
0.0126
EPSS Percentile
65.7%
Details
CWE
CWE-89
Status
published
Products (1)
livelycart/livelycart
1.2.0
Published
Jun 30, 2015
Tracked Since
Feb 18, 2026