CVE-2007-1034
Emporium Module < 2.3.0 - SQL Injection via category_id Parameter
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2007-1034. PoCs published by ajann, Hussin X.
AI-analyzed exploit summary This is a functional ASP-based exploit for CVE-2007-1034, targeting a blind SQL injection vulnerability in PHP-Nuke Module Emporium <= 2.3.0. It automates the extraction of admin credentials via union-based SQLi and includes additional features like header retrieval and whois lookup.
Description
SQL injection vulnerability in the category file in modules.php in the Emporium 2.3.0 and earlier module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the category_id parameter.
Exploits (2)
This is a functional ASP-based exploit for CVE-2007-1034, targeting a blind SQL injection vulnerability in PHP-Nuke Module Emporium <= 2.3.0. It automates the extraction of admin credentials via union-based SQLi and includes additional features like header retrieval and whois lookup.
This exploit demonstrates a SQL injection vulnerability in PHP-Nuke's Emporium module (version 2.3.0) via the 'id_catg' parameter. The PoC uses a UNION-based SQLi to extract sensitive data (aid, pwd) from the 'nuke_authors' table.