CVE-2021-42665
CRITICALEngineers Online Portal - SQL Injection via Login Form
Title source: llmExploitation Summary
EIP tracks 3 public exploits for CVE-2021-42665. PoCs published by Alon Leviev, 0xDeku.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in the Engineers Online Portal 1.0 login form, allowing authentication bypass via a crafted payload in the username or password field.
Description
An SQL Injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the login form inside of index.php, which can allow an attacker to bypass authentication.
Exploits (3)
This exploit demonstrates an SQL injection vulnerability in the Engineers Online Portal 1.0 login form, allowing authentication bypass via a crafted payload in the username or password field.
This repository provides a proof-of-concept for CVE-2021-42665, an SQL injection vulnerability in the Engineers Online Portal login form. The exploit allows authentication bypass by injecting a payload into the username or password field.
This repository provides a technical description and proof-of-concept payload for an SQL injection vulnerability in the Engineers Online Portal login form, allowing authentication bypass. It includes references to external sources and a demonstration of the exploit.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H