CVE-2005-3478
PHPCafe.net Tutorials Manager 1.0 Beta 2 - SQL Injection via id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-3478. PoCs published by almaster.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in PHPcafe Tutorial Manager by manipulating the 'id' parameter in a URL to extract sensitive data from the database. The PoC includes example payloads for union-based SQLi to retrieve admin credentials.
Description
SQL injection vulnerability in index.php in PHPCafe.net Tutorials Manager 1.0 Beta 2 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in PHPcafe Tutorial Manager by manipulating the 'id' parameter in a URL to extract sensitive data from the database. The PoC includes example payloads for union-based SQLi to retrieve admin credentials.