CVE-2010-2720
phpaaCms 0.3.1 UTF-8 - SQL Injection via list.php id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-2720. PoCs published by CoBRa_21.
AI-analyzed exploit summary The provided code is a minimal stub demonstrating a SQL injection vulnerability in phpaaCms via the 'id' parameter in list.php. It lacks exploit payloads or detailed technical steps, serving only as a basic vulnerability notice.
Description
SQL injection vulnerability in list.php in phpaaCms 0.3.1 UTF-8, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these details are obtained from third party information.
Exploits (1)
The provided code is a minimal stub demonstrating a SQL injection vulnerability in phpaaCms via the 'id' parameter in list.php. It lacks exploit payloads or detailed technical steps, serving only as a basic vulnerability notice.