Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-6202. PoCs published by InATeam.
AI-analyzed exploit summary This exploit targets a SQL injection vulnerability in Seditio CMS <= 121, allowing an attacker to extract user password hashes by manipulating the search functionality. It uses a blind SQL injection technique to brute-force the hash character by character.
Description
SQL injection vulnerability in plugins/search/search.php in Neocrome Seditio CMS 121 and earlier allows remote attackers to execute arbitrary SQL commands via the pag_sub[] parameter to plug.php.
Exploits (1)
This exploit targets a SQL injection vulnerability in Seditio CMS <= 121, allowing an attacker to extract user password hashes by manipulating the search functionality. It uses a blind SQL injection technique to brute-force the hash character by character.