Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-1313. PoCs published by MhZ91.
AI-analyzed exploit summary This exploit demonstrates SQL injection vulnerabilities in Bloo - Object Oriented Blog Software <= v.1.00. It provides multiple URLs with crafted SQL queries to extract user credentials from the database.
Description
Multiple SQL injection vulnerabilities in index.php in Bloo 1.00 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) post_id, (2) post_category_id, (3) post_year_month, and (4) static_page_id parameters; and unspecified other vectors.
Exploits (1)
This exploit demonstrates SQL injection vulnerabilities in Bloo - Object Oriented Blog Software <= v.1.00. It provides multiple URLs with crafted SQL queries to extract user credentials from the database.