Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-2422. PoCs published by fahn zichler.
AI-analyzed exploit summary This exploit demonstrates SQL injection in Web Slider 0.6 via the 'slide' parameter, allowing attackers to extract sensitive data such as user credentials, database information, and system files like /etc/passwd.
Description
SQL injection vulnerability in index.php in Web Slider 0.6 allows remote attackers to execute arbitrary SQL commands via the slide parameter in a slides action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
This exploit demonstrates SQL injection in Web Slider 0.6 via the 'slide' parameter, allowing attackers to extract sensitive data such as user credentials, database information, and system files like /etc/passwd.