CVE-2010-2257
Pay Per Minute Video Chat Script 2.0-2.1 - SQL Injection via index_ie.php page Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-2257. PoCs published by R3d-D3V!L.
AI-analyzed exploit summary This exploit demonstrates XSS and SQL injection vulnerabilities in Pay Per Minute Video Chat Script V 2.1. It includes proof-of-concept URLs for XSS and mentions SQL injection without a working exploit.
Description
SQL injection vulnerability in index_ie.php in Pay Per Minute Video Chat Script 2.0 and 2.1 allows remote attackers to execute arbitrary SQL commands via the page parameter.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by R3d-D3V!L · textwebappsphp
https://www.exploit-db.com/exploits/10983
This exploit demonstrates XSS and SQL injection vulnerabilities in Pay Per Minute Video Chat Script V 2.1. It includes proof-of-concept URLs for XSS and mentions SQL injection without a working exploit.
Classification
Working Poc 90%
Attack Type
Xss | Sqli
Complexity
Trivial
Reliability
Reliable
Target:
Pay Per Minute Video Chat Script V 2.1
No auth needed
Prerequisites:
Access to the vulnerable web application
devstral-2 · analyzed Feb 16, 2026
Full analysis →
References (2)
Core 2
Core References
Exploit exploit
x_refsource_exploit-db
http://www.exploit-db.com/exploits/10983
Exploit x_refsource_misc
http://packetstormsecurity.org/1001-exploits/ppmvcs-sqlxss.txt
Scores
EPSS
0.0093
EPSS Percentile
55.9%
Details
CWE
CWE-89
Status
published
Products (2)
payperviewvideosoftware/pay_per_minute_video_chat_script
2.0
payperviewvideosoftware/pay_per_minute_video_chat_script
2.1
Published
Jun 09, 2010
Tracked Since
Feb 18, 2026