mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-25 04:24:05 +02:00
18 lines
680 B
Markdown
18 lines
680 B
Markdown
### [CVE-2007-1909](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1909)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
SQL injection vulnerability in login.php in Ryan Haudenschilt Battle.net Clan Script for PHP 1.5.1 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) user or (2) pass parameter.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://www.exploit-db.com/exploits/3691
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|