Exploitation Summary
EIP tracks 2 public exploits for CVE-2008-1336. PoCs published by JosS.
AI-analyzed exploit summary This exploit demonstrates multiple SQL injection vulnerabilities in Koobi CMS versions 4.3.0, 4.2.5, and 4.2.4. It provides specific URLs and payloads to extract admin credentials from the database.
Description
SQL injection vulnerability in Koobi CMS 4.2.3 through 4.3.0 allows remote attackers to execute arbitrary SQL commands via the categ parameter in a links action to index.php, a different vector than CVE-2008-1122.
Exploits (2)
This exploit demonstrates multiple SQL injection vulnerabilities in Koobi CMS versions 4.3.0, 4.2.5, and 4.2.4. It provides specific URLs and payloads to extract admin credentials from the database.
This exploit demonstrates a SQL injection vulnerability in Koobi CMS versions 4.3.0 to 4.2.3 via the 'categ' parameter in index.php, allowing an attacker to extract user credentials (email and password) from the database.