Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-0377. PoCs published by vds_s.
AI-analyzed exploit summary This exploit demonstrates SQL injection and XSS vulnerabilities in Joomla component beamospetition 1.0.12. The SQL injection allows retrieval of user credentials, while the XSS enables arbitrary script execution.
Description
SQL injection vulnerability in the beamospetition (com_beamospetition) 1.0.12 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mpid parameter in a sign action to index.php, a different vector than CVE-2008-3132.
Exploits (1)
This exploit demonstrates SQL injection and XSS vulnerabilities in Joomla component beamospetition 1.0.12. The SQL injection allows retrieval of user credentials, while the XSS enables arbitrary script execution.