CVE-2007-3840
sitetrafficstats - SQL Injection via referralUrl.php offset parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-3840. PoCs published by t0pP8uZz.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Traffic Stats software, allowing an attacker to extract admin email and password hashes via a crafted UNION-based SQL query. The exploit requires prior registration and interaction with the application to trigger the vulnerability.
Description
SQL injection vulnerability in referralUrl.php in Traffic Stats allows remote attackers to execute arbitrary SQL commands via the offset parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in Traffic Stats software, allowing an attacker to extract admin email and password hashes via a crafted UNION-based SQL query. The exploit requires prior registration and interaction with the application to trigger the vulnerability.