Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-0426. PoCs published by ajann.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in DMXReady Classified Listings Manager <= 1.1. It allows an attacker to extract admin credentials by injecting malicious SQL queries into the 'cid' parameter.
Description
SQL injection vulnerability in CategoryManager/upload_image_category.asp in DMXReady Classified Listings Manager 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the cid parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in DMXReady Classified Listings Manager <= 1.1. It allows an attacker to extract admin credentials by injecting malicious SQL queries into the 'cid' parameter.