Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-0282. PoCs published by j0j0.
AI-analyzed exploit summary This exploit targets a SQL injection vulnerability in DomPHP <= 0.81, allowing an attacker to add an administrator account by manipulating the 'mail' parameter in the registration form. The exploit constructs a malicious HTTP POST request with a crafted multipart/form-data payload to inject SQL into the database.
Description
SQL injection vulnerability in welcome/inscription.php in DomPHP 0.81 and earlier allows remote attackers to execute arbitrary SQL commands via the mail parameter.
Exploits (1)
This exploit targets a SQL injection vulnerability in DomPHP <= 0.81, allowing an attacker to add an administrator account by manipulating the 'mail' parameter in the registration form. The exploit constructs a malicious HTTP POST request with a crafted multipart/form-data payload to inject SQL into the database.