CVE-2008-2135
VisualShapers ezContents 2.0.0 - SQL Injection via contentname or article Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-2135. PoCs published by Virangar Security.
AI-analyzed exploit summary This exploit demonstrates SQL injection vulnerabilities in ezContents CMS Version 2.0.0 via the 'contentname' and 'article' parameters in showdetails.php and printer.php, respectively. It extracts user credentials and email addresses from the 'authors' table.
Description
Multiple SQL injection vulnerabilities in VisualShapers ezContents 2.0.0 allow remote attackers to execute arbitrary SQL commands via the (1) contentname parameter to showdetails.php and the (2) article parameter to printer.php.
Exploits (1)
This exploit demonstrates SQL injection vulnerabilities in ezContents CMS Version 2.0.0 via the 'contentname' and 'article' parameters in showdetails.php and printer.php, respectively. It extracts user credentials and email addresses from the 'authors' table.