CVE-2008-0326
FaScript FaPersianHack 1.0 - SQL Injection via id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-0326. PoCs published by Khashayar Fereidani.
AI-analyzed exploit summary This is a writeup describing a SQL injection vulnerability in FaScript FaPersianHack v1. It provides details on how to exploit the vulnerability to read the admin credentials stored in a configuration file using MySQL's load_file function.
Description
SQL injection vulnerability in class/show.php in FaScript FaPersianHack 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to show.php.
Exploits (1)
This is a writeup describing a SQL injection vulnerability in FaScript FaPersianHack v1. It provides details on how to exploit the vulnerability to read the admin credentials stored in a configuration file using MySQL's load_file function.