Exploitation Summary
EIP tracks 1 public exploit for CVE-2017-20131. PoCs published by Kaan KAMIS.
AI-analyzed exploit summary This is a writeup describing an SQL Injection vulnerability in Itech News Portal Script v6.28. It provides payload examples for boolean-based blind, time-based blind, and UNION query attacks.
Description
A vulnerability was found in Itech News Portal 6.28. It has been classified as critical. Affected is an unknown function of the file /news-portal-script/information.php. The manipulation of the argument inf leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Exploits (1)
This is a writeup describing an SQL Injection vulnerability in Itech News Portal Script v6.28. It provides payload examples for boolean-based blind, time-based blind, and UNION query attacks.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L