Exploitation Summary
EIP tracks 2 public exploits for CVE-2008-1613. PoCs published by IRM Plc., SECFORCE.
AI-analyzed exploit summary This Python script exploits a SQL injection vulnerability in RED DOT CMS 7.5 to enumerate databases, tables, columns, and data. It constructs malicious SQL queries via the 'Action' parameter in 'ioRD.asp' and leverages error-based techniques to extract information.
Description
SQL injection vulnerability in ioRD.asp in RedDot CMS 7.5 Build 7.5.0.48, and possibly other versions including 6.5 and 7.0, allows remote attackers to execute arbitrary SQL commands via the LngId parameter.
Exploits (2)
This Python script exploits a SQL injection vulnerability in RED DOT CMS 7.5 to enumerate databases, tables, columns, and data. It constructs malicious SQL queries via the 'Action' parameter in 'ioRD.asp' and leverages error-based techniques to extract information.
This repository contains a functional Python script that exploits CVE-2008-1613, a SQL injection vulnerability in Red Dot CMS 7.5. The script allows for database, table, column, and data enumeration through crafted SQL queries.