Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-1078. PoCs published by AmnPardaz Security Research Team.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in SphereCMS 1.1 Alpha, where insufficient sanitization of user-supplied data in the 'view' parameter of archive.php allows attackers to manipulate SQL queries. No actual exploit code is included, only a description and example URI.
Description
SQL injection vulnerability in archive.php in XlentProjects SphereCMS 1.1 alpha allows remote attackers to execute arbitrary SQL commands via encoded null bytes ("%00") in the view parameter, which bypasses a protection mechanism.
Exploits (1)
The provided text describes an SQL injection vulnerability in SphereCMS 1.1 Alpha, where insufficient sanitization of user-supplied data in the 'view' parameter of archive.php allows attackers to manipulate SQL queries. No actual exploit code is included, only a description and example URI.