Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-1508. PoCs published by RMx.
AI-analyzed exploit summary The exploit demonstrates an SQL injection vulnerability in Efestech E-Kontor by injecting a UNION-based query to extract sensitive data (passwords and company names) from the admin table. The attack leverages unsanitized user input in the 'id' parameter.
Description
SQL injection vulnerability in EfesTech E-Kontör and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
The exploit demonstrates an SQL injection vulnerability in Efestech E-Kontor by injecting a UNION-based query to extract sensitive data (passwords and company names) from the admin table. The attack leverages unsanitized user input in the 'id' parameter.