Exploitation Summary
EIP tracks 2 public exploits for CVE-2003-0509. PoCs published by [email protected].
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in CyberStrong eShop's '20review.asp' script. It explains the vulnerability and provides a sample URL to exploit it, but does not include actual exploit code.
Description
SQL injection vulnerability in Cyberstrong eShop 4.2 and earlier allows remote attackers to steal authentication information and gain privileges via the ProductCode parameter in (1) 10expand.asp, (2) 10browse.asp, and (3) 20review.asp.
Exploits (2)
The provided text describes an SQL injection vulnerability in CyberStrong eShop's '20review.asp' script. It explains the vulnerability and provides a sample URL to exploit it, but does not include actual exploit code.
The provided text describes an SQL injection vulnerability in CyberStrong eShop via the '10expand.asp' script. It outlines the potential impact, including stealing authentication information, but does not include executable exploit code.