Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-0984. PoCs published by SaO.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in PollMentor v2.0 via the 'id' parameter in pollmentorres.asp. The PoC shows how an attacker can manipulate the database by injecting SQL commands to update the 'question' field.
Description
SQL injection vulnerability in admin_poll.asp in PollMentor 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to pollmentorres.asp.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in PollMentor v2.0 via the 'id' parameter in pollmentorres.asp. The PoC shows how an attacker can manipulate the database by injecting SQL commands to update the 'question' field.