Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-2151. PoCs published by SirGod.
AI-analyzed exploit summary The exploit demonstrates two vulnerabilities in AdaptWeb 0.9.2: a Local File Inclusion (LFI) via the 'newlang' parameter and an SQL Injection via the 'opcao' parameter. Both PoCs are functional and include specific payloads to exploit the vulnerabilities.
Description
Directory traversal vulnerability in index.php in AdaptWeb 0.9.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the newlang parameter.
Exploits (1)
The exploit demonstrates two vulnerabilities in AdaptWeb 0.9.2: a Local File Inclusion (LFI) via the 'newlang' parameter and an SQL Injection via the 'opcao' parameter. Both PoCs are functional and include specific payloads to exploit the vulnerabilities.