Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-1368. PoCs published by FormatXformat.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in GameScript.net's index.php, allowing an attacker to extract user credentials via a UNION-based attack. The PoC is straightforward and directly targets the 'id' parameter.
Description
SQL injection vulnerability in index.php in GameScript (GS) 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter in a category action.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in GameScript.net's index.php, allowing an attacker to extract user credentials via a UNION-based attack. The PoC is straightforward and directly targets the 'id' parameter.