Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-3987. PoCs published by Aria-Security Team.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in Image Racer 1.0, where the 'SearchWord' parameter in 'SearchResults.asp' is not properly sanitized. This allows attackers to inject arbitrary SQL commands.
Description
SQL injection vulnerability in SearchResults.asp in ImageRacer 1.0, when WordSearchCrit is enabled, allows remote attackers to execute arbitrary SQL commands via the SearchWord parameter.
Exploits (1)
The provided text describes an SQL injection vulnerability in Image Racer 1.0, where the 'SearchWord' parameter in 'SearchResults.asp' is not properly sanitized. This allows attackers to inject arbitrary SQL commands.