Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-0678. PoCs published by cl24zy.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Fullaspsite Asp Hosting (tr) by injecting a UNION-based query to retrieve admin credentials (username and password) from the database. The exploit is straightforward and leverages a vulnerable parameter in the URL.
Description
SQL injection vulnerability in windows.asp in Fullaspsite Asp Hosting Sitesi allows remote attackers to execute arbitrary SQL commands via the kategori_id parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in Fullaspsite Asp Hosting (tr) by injecting a UNION-based query to retrieve admin credentials (username and password) from the database. The exploit is straightforward and leverages a vulnerable parameter in the URL.