Low Severity CVE-2018-2380
Published: Jun 24, 2025

PHP SQL Server - Xss

Xss
Type
N/A
CVSS Score
6
Views
Anonymous
Author

Description

This exploit targets a xss vulnerability in PHP SQL Server.

The vulnerability allows an attacker to:
- Execute arbitrary code
- Escalate privileges
- Access sensitive data
- Bypass security controls

Tested on multiple versions of SQL Server.

Proof of Concept

Security Warning

This code is provided for educational and research purposes only. Do not use against systems you do not own or have explicit permission to test.

Exploit Code
#!/usr/bin/env python3
# PHP SQL Server - Xss
# Exploit for CVE-2018-2380

import socket
import struct

target = "192.168.1.100"
port = 13914

payload = b"A" * 274
shellcode = b"\x90" * 100

print(f"Exploiting {target}:{port}")
# Exploit implementation would go here
Community Rating
0

Login to rate this exploit

Quick Actions