Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-2142. PoCs published by ByALBAYX.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in Zip Store Chat 4.0 and 5.0, allowing authentication bypass via crafted login credentials. The PoC provides specific payloads to exploit the vulnerability in the admin panel.
Description
Multiple SQL injection vulnerabilities in admin/index.asp in Zip Store Chat 4.0 and 5.0 allow remote attackers to execute arbitrary SQL commands via the (1) login and (2) senha parameters.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in Zip Store Chat 4.0 and 5.0, allowing authentication bypass via crafted login credentials. The PoC provides specific payloads to exploit the vulnerability in the admin panel.