CVE-2008-2823
PHPeasyblog < 1.13 - SQL Injection via Newsarchive Post Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-2823. PoCs published by t0pP8uZz.
AI-analyzed exploit summary This is a writeup describing a SQL injection vulnerability in PHPEasyNews <= 1.13 RC2. It provides a detailed explanation of the vulnerability, including a proof-of-concept SQL injection payload to extract user credentials from the database.
Description
SQL injection vulnerability in newsarchive.php in PHPeasyblog (formerly phpeasynews) 1.13 RC2 and earlier allows remote attackers to execute arbitrary SQL commands via the post parameter.
Exploits (1)
This is a writeup describing a SQL injection vulnerability in PHPEasyNews <= 1.13 RC2. It provides a detailed explanation of the vulnerability, including a proof-of-concept SQL injection payload to extract user credentials from the database.