Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-2816. PoCs published by anonymous.
AI-analyzed exploit summary This is a writeup describing an SQL injection vulnerability in Oxygen 2.0. It provides a manual proof-of-concept for exploiting the vulnerability via the 'repquote' parameter in the 'post.php' file, allowing an attacker to extract sensitive information from the database.
Description
SQL injection vulnerability in post.php in Oxygen (aka O2PHP Bulletin Board) 2.0 allows remote attackers to execute arbitrary SQL commands via the repquote parameter in a reply action, a different vector than CVE-2006-1572.
Exploits (1)
This is a writeup describing an SQL injection vulnerability in Oxygen 2.0. It provides a manual proof-of-concept for exploiting the vulnerability via the 'repquote' parameter in the 'post.php' file, allowing an attacker to extract sensitive information from the database.