CVE-2010-0723

Ero Auktion 2.0 and 2010 - SQL Injection via News.php ID Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2010-0723. PoCs published by Easy Laster.

AI-analyzed exploit summary This is a writeup describing a SQL injection vulnerability in Ero Auktion 2010's news.php. It provides an example exploit URL but does not include functional exploit code.

Description

SQL injection vulnerability in news.php in Ero Auktion 2.0 and 2010 allows remote attackers to execute arbitrary SQL commands via the id parameter.

Exploits (2)

exploitdb WRITEUP VERIFIED
by Easy Laster · textwebappsphp
https://www.exploit-db.com/exploits/11522

This is a writeup describing a SQL injection vulnerability in Ero Auktion 2010's news.php. It provides an example exploit URL but does not include functional exploit code.

Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target: Ero Auktion 2010
No auth needed
Prerequisites: Access to the vulnerable news.php endpoint
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by Easy Laster · textwebappsphp
https://www.exploit-db.com/exploits/11521

This is a writeup describing a SQL injection vulnerability in Ero Auktion V.2.0. It provides an example exploit URL for extracting user credentials from the database.

Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: Ero Auktion V.2.0
No auth needed
Prerequisites: Access to the vulnerable news.php endpoint
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (8)

Core 8
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/11521
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/56446
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/11522
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/38666

Scores

EPSS 0.0184
EPSS Percentile 76.2%

Details

CWE
CWE-89
Status published
Products (2)
mhproducts/ero_auktion 2.0
mhproducts/ero_auktion 2010
Published Feb 26, 2010
Tracked Since Feb 18, 2026