Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-1859. PoCs published by t0pP8uZz.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in iScripts SocialWare, allowing an attacker to extract admin and user credentials from the database via crafted UNION-based SQL queries. The PoC includes specific injection payloads and a method to upload a shell post-exploitation.
Description
SQL injection vulnerability in events.php in iScripts SocialWare allows remote attackers to execute arbitrary SQL commands via the id parameter in a show action.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in iScripts SocialWare, allowing an attacker to extract admin and user credentials from the database via crafted UNION-based SQL queries. The PoC includes specific injection payloads and a method to upload a shell post-exploitation.