Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-1641. PoCs published by Mehmet Ince.
AI-analyzed exploit summary This exploit targets a SQL injection vulnerability in Portail PHP v20, allowing an attacker to extract user password hashes from the database. It constructs a malicious SQL query via the 'idnews' parameter and retrieves the hash from the response.
Description
SQL injection vulnerability in index.php in PortailPHP 2.0 allows remote attackers to execute arbitrary SQL commands via the idnews parameter.
Exploits (1)
This exploit targets a SQL injection vulnerability in Portail PHP v20, allowing an attacker to extract user password hashes from the database. It constructs a malicious SQL query via the 'idnews' parameter and retrieves the hash from the response.