Skip to content

Latest commit

 

History

History
17 lines (11 loc) · 705 Bytes

CVE-2008-0385.md

File metadata and controls

17 lines (11 loc) · 705 Bytes

Description

SQL injection vulnerability in server/widgetallocator.php in Urulu 2.1 allows remote attackers to execute arbitrary SQL commands via the connectionId parameter to index.php with (1) statprt/js/request or (2) dyn/js/request in the PATH_INFO.

POC

Reference

Github

No PoCs found on GitHub currently.