Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-0827. PoCs published by S@BUN.
AI-analyzed exploit summary This exploit demonstrates SQL injection in the PHP-Nuke 'books' module, allowing unauthorized extraction of admin credentials from the database. The PoC provides two payloads targeting different table structures (nuke_users and postNuke_users).
Description
SQL injection vulnerability in the Books module of PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the cid parameter.
Exploits (1)
This exploit demonstrates SQL injection in the PHP-Nuke 'books' module, allowing unauthorized extraction of admin credentials from the database. The PoC provides two payloads targeting different table structures (nuke_users and postNuke_users).