Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-0750. PoCs published by x0r.
AI-analyzed exploit summary This exploit demonstrates an authentication bypass and column truncation vulnerability in smNews. It leverages SQL injection via the login and registration forms to bypass authentication or overwrite existing user accounts.
Description
SQL injection vulnerability in login.php in the smNews example script for txtSQL 2.2 Final allows remote attackers to execute arbitrary SQL commands via the username parameter.
Exploits (1)
This exploit demonstrates an authentication bypass and column truncation vulnerability in smNews. It leverages SQL injection via the login and registration forms to bypass authentication or overwrite existing user accounts.