CVE-2008-2265
EMO Realty Manager - SQL Injection via news.php ida Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-2265. PoCs published by HaCkeR_EgY.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in EMO Realty Manager, allowing an attacker to extract sensitive information such as user credentials from the database. The PoC uses a UNION-based SQLi technique to concatenate and retrieve data from the 'members' table.
Description
SQL injection vulnerability in news.php in EMO Realty Manager allows remote attackers to execute arbitrary SQL commands via the ida parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in EMO Realty Manager, allowing an attacker to extract sensitive information such as user credentials from the database. The PoC uses a UNION-based SQLi technique to concatenate and retrieve data from the 'members' table.