Exploitation Summary
EIP tracks 1 public exploit for CVE-2019-25444. PoCs published by Mr Winst0n.
AI-analyzed exploit summary The exploit demonstrates SQL Injection (SQLi) and Cross-Site Scripting (XSS) vulnerabilities in Fiverr Clone Script 1.2.2. It provides direct URLs with payloads to exploit these vulnerabilities, confirming their existence and exploitability.
Description
Fiverr Clone Script 1.2.2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the page parameter. Attackers can supply malicious SQL syntax in the page parameter to extract sensitive database information or modify database contents.
Exploits (1)
The exploit demonstrates SQL Injection (SQLi) and Cross-Site Scripting (XSS) vulnerabilities in Fiverr Clone Script 1.2.2. It provides direct URLs with payloads to exploit these vulnerabilities, confirming their existence and exploitability.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N