Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-0845. PoCs published by diwou.
AI-analyzed exploit summary This exploit targets Advanced Poll 2.0.0 to 2.0.5-dev by generating an admin session via a hardcoded username/password and MD5 hashing. It leverages LWP to send a POST request and extracts the session ID for potential authentication bypass.
Description
admin/index.php in Advanced Poll 2.0.0 through 2.0.5-dev allows remote attackers to bypass authentication and gain administrator privileges by obtaining a valid session identifier and setting the uid parameter to 1.
Exploits (1)
This exploit targets Advanced Poll 2.0.0 to 2.0.5-dev by generating an admin session via a hardcoded username/password and MD5 hashing. It leverages LWP to send a POST request and extracts the session ID for potential authentication bypass.