CyberRota Analysis
AI-GeneratedEmlog versions 2.6.20 and earlier are susceptible to a SQL injection vulnerability in the queryDatabase function within ai.php, allowing attackers to manipulate database queries. This could lead to unauthorized data access or modification, posing a significant risk to the integrity and confidentiality of the affected systems. Website administrators and developers using Emlog should prioritize patching or upgrading to mitigate potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Emlog is an open source website building system. In 2.6.20 and earlier, there is a SQL injection vulnerability in the queryDatabase function in ai.php.