Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-4954. PoCs published by secret.
AI-analyzed exploit summary This is a writeup describing an error-based SQL injection vulnerability in xt:Commerce Gambio 2008-2010 via the 'reviews.php' file. It provides example URLs and error messages but does not include functional exploit code.
Description
SQL injection vulnerability in product_reviews_info.php in xt:Commerce Gambio 2008 allows remote attackers to execute arbitrary SQL commands via the products_id parameter.
Exploits (1)
This is a writeup describing an error-based SQL injection vulnerability in xt:Commerce Gambio 2008-2010 via the 'reviews.php' file. It provides example URLs and error messages but does not include functional exploit code.