CVE-2021-46427
CRITICALSourcecodester Simple Chatbot App 1.0 - SQL Injection
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2021-46427. PoCs published by Saud Alenazi.
AI-analyzed exploit summary This exploit demonstrates a blind SQL injection vulnerability in Simple Chatbot Application 1.0 via the 'message' parameter. It includes time-based and UNION-based payloads to exploit the vulnerability, with instructions for using sqlmap to automate the attack.
Description
An SQL Injection vulnerability exists in Sourcecodester Simple Chatbot Application 1.0 via the message parameter in Master.php.
Exploits (1)
This exploit demonstrates a blind SQL injection vulnerability in Simple Chatbot Application 1.0 via the 'message' parameter. It includes time-based and UNION-based payloads to exploit the vulnerability, with instructions for using sqlmap to automate the attack.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H