CVE-2007-3609
eMeeting Online Dating Software 5.2 - SQL Injection via id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-3609. PoCs published by t0pP8uZz.
AI-analyzed exploit summary This exploit demonstrates SQL injection vulnerabilities in eMeeting Online Dating Software 5.2, specifically in the 'b.php' and 'gallery.php' scripts. It allows an attacker to extract user credentials and other sensitive data from the database via UNION-based SQL injection.
Description
Multiple SQL injection vulnerabilities in eMeeting Online Dating Software 5.2 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) b.php and (2) account/gallery.php, and other unspecified vectors.
Exploits (1)
This exploit demonstrates SQL injection vulnerabilities in eMeeting Online Dating Software 5.2, specifically in the 'b.php' and 'gallery.php' scripts. It allows an attacker to extract user credentials and other sensitive data from the database via UNION-based SQL injection.