CVE-2010-5036
iScripts eSwap 2.0 - SQL Injection via addsale.php type Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-5036. PoCs published by Sid3^effects.
AI-analyzed exploit summary The document describes SQL injection and XSS vulnerabilities in iScripts eSwap v2.0, providing attack patterns and demo URLs but no functional exploit code. It includes technical details about the vulnerabilities and their locations.
Description
SQL injection vulnerability in addsale.php in iScripts eSwap 2.0 allows remote attackers to execute arbitrary SQL commands via the type parameter.
Exploits (1)
The document describes SQL injection and XSS vulnerabilities in iScripts eSwap v2.0, providing attack patterns and demo URLs but no functional exploit code. It includes technical details about the vulnerabilities and their locations.