Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-0846. PoCs published by S@BUN.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in the Joomla! and Mambo 'com_profile' component. The PoC uses a crafted URL to extract user credentials (username and password) from the database via a UNION-based SQL injection.
Description
SQL injection vulnerability in index.php in the com_profile component for Joomla! allows remote attackers to execute arbitrary SQL commands via the oid parameter.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in the Joomla! and Mambo 'com_profile' component. The PoC uses a crafted URL to extract user credentials (username and password) from the database via a UNION-based SQL injection.