Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-1816. PoCs published by ThE g0bL!N.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in My Game Script V2.0, allowing authentication bypass by injecting a tautology into the username field. The payload manipulates the SQL query to return true, granting unauthorized access.
Description
SQL injection vulnerability in admin.php in My Game Script 2.0 allows remote attackers to execute arbitrary SQL commands via the user parameter (aka the username field). NOTE: some of these details are obtained from third party information.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in My Game Script V2.0, allowing authentication bypass by injecting a tautology into the username field. The payload manipulates the SQL query to return true, granting unauthorized access.