CVE-2008-0753
Virtual War 1.5 - SQL Injection via Calendar Month Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-0753. PoCs published by Pouya_Server.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in VWar 1.5.0, where the 'month' parameter in calendar.php is not properly sanitized. This allows attackers to inject malicious SQL queries, potentially compromising the application or underlying database.
Description
SQL injection vulnerability in calendar.php in Virtual War (VWar) 1.5 allows remote attackers to execute arbitrary SQL commands via the month parameter.
Exploits (1)
The provided text describes an SQL injection vulnerability in VWar 1.5.0, where the 'month' parameter in calendar.php is not properly sanitized. This allows attackers to inject malicious SQL queries, potentially compromising the application or underlying database.