CVE-2022-50805
HIGHSenayan Library Management System 9.0.0 - SQL Injection
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2022-50805. PoCs published by nu11secur1ty.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Senayan Library Management System v9.0.0 via the 'class' parameter. The payload uses a boolean-based blind technique with MySQL's RLIKE function to confirm the vulnerability.
Description
Senayan Library Management System 9.0.0 contains a SQL injection vulnerability in the 'class' parameter that allows attackers to inject malicious SQL queries. Attackers can exploit the vulnerability by submitting crafted payloads to manipulate database queries and potentially extract sensitive information.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in Senayan Library Management System v9.0.0 via the 'class' parameter. The payload uses a boolean-based blind technique with MySQL's RLIKE function to confirm the vulnerability.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N