Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-0279. PoCs published by j0j0.
AI-analyzed exploit summary This exploit targets a SQL injection vulnerability in Xforum 1.4 via the 'liretopic.php' script. It extracts user credentials (username, password, and email) by manipulating the 'topic' and 'categorie' parameters in a UNION-based SQL injection attack.
Description
SQL injection vulnerability in liretopic.php in Xforum 1.4 and possibly others allows remote attackers to execute arbitrary SQL commands via the topic parameter. NOTE: the categorie parameter might also be affected.
Exploits (1)
This exploit targets a SQL injection vulnerability in Xforum 1.4 via the 'liretopic.php' script. It extracts user credentials (username, password, and email) by manipulating the 'topic' and 'categorie' parameters in a UNION-based SQL injection attack.