Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-2158. PoCs published by waraxe.
AI-analyzed exploit summary This is a detailed technical writeup describing multiple vulnerabilities in TorrentTrader Classic 1.09, including SQL injection, weak password generation, unauthorized database backup, and information leakage. The analysis includes code snippets, attack vectors, and exploitation techniques.
Description
account-recover.php in TorrentTrader Classic 1.09 chooses random passwords from an insufficiently large set, which makes it easier for remote attackers to obtain a password via a brute-force attack.
Exploits (1)
This is a detailed technical writeup describing multiple vulnerabilities in TorrentTrader Classic 1.09, including SQL injection, weak password generation, unauthorized database backup, and information leakage. The analysis includes code snippets, attack vectors, and exploitation techniques.
References (5)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N