CVE-2007-6670
PHCDownload 1.1.0 - SQL Injection via Search String Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-6670. PoCs published by Lostmon.
AI-analyzed exploit summary The provided text describes an SQL injection and XSS vulnerability in PHCDownload 1.1.0, but does not include actual exploit code. It outlines the potential impact and attack vectors without demonstrating a functional proof-of-concept.
Description
SQL injection vulnerability in search.php in PHCDownload 1.1.0 allows remote attackers to execute arbitrary SQL commands via the string parameter.
Exploits (1)
The provided text describes an SQL injection and XSS vulnerability in PHCDownload 1.1.0, but does not include actual exploit code. It outlines the potential impact and attack vectors without demonstrating a functional proof-of-concept.