Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-4762. PoCs published by SmOk3.
AI-analyzed exploit summary The exploit demonstrates an SQL injection vulnerability in E-Smart Cart by providing malformed input for username and password fields, bypassing authentication. The payload leverages improper input sanitization to manipulate the SQL query.
Description
Multiple SQL injection vulnerabilities in embadmin/login.asp in E-SMARTCART 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) user and (2) pass fields, different vectors than CVE-2007-0092.
Exploits (1)
The exploit demonstrates an SQL injection vulnerability in E-Smart Cart by providing malformed input for username and password fields, bypassing authentication. The payload leverages improper input sanitization to manipulate the SQL query.