SQL injection vulnerability in listings.php in E-Php B2B Trading Marketplace Script allows remote attackers to execute arbitrary SQL commands via the cid parameter in a product action.
- http://packetstorm.linuxsecurity.com/0809-exploits/ephpb2b-sql.txt
No PoCs found on GitHub currently.