CVE-2008-0451
PacerCMS 0.6 - Authenticated SQL Injection via id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-0451. PoCs published by RawSecurity.org.
AI-analyzed exploit summary The provided text describes SQL injection vulnerabilities in PacerCMS versions prior to 0.6.1, where user-supplied input is not properly sanitized. It includes a sample exploit URL but lacks actual exploit code.
Description
Multiple SQL injection vulnerabilities in PacerCMS 0.6 allow remote authenticated users to execute arbitrary SQL commands via the id parameter to (1) siteadmin/article-edit.php; and unspecified parameters to (2) submitted-edit.php, (3) page-edit.php, (4) section-edit.php, (5) staff-edit.php, and (6) staff-access.php in siteadmin/.
Exploits (1)
The provided text describes SQL injection vulnerabilities in PacerCMS versions prior to 0.6.1, where user-supplied input is not properly sanitized. It includes a sample exploit URL but lacks actual exploit code.