Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-6583. PoCs published by irk4z.
AI-analyzed exploit summary This exploit demonstrates SQL injection and local file inclusion vulnerabilities in 1024 CMS 1.3.1. The SQLi allows dumping user credentials via UNION-based injection, while the LFI enables reading arbitrary files via path traversal.
Description
SQL injection vulnerability in admin/ops/findip/ajax/search.php in 1024 CMS 1.3.1 allows remote attackers to execute arbitrary SQL commands via the ip parameter.
Exploits (1)
This exploit demonstrates SQL injection and local file inclusion vulnerabilities in 1024 CMS 1.3.1. The SQLi allows dumping user credentials via UNION-based injection, while the LFI enables reading arbitrary files via path traversal.