CVE-2008-2866
CaupoShop Classic 1.3 - SQL Injection via saArticle[ID] Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-2866. PoCs published by anonymous.
AI-analyzed exploit summary This exploit targets a SQL injection vulnerability in CaupoShop Classic 1.3 via the 'saArticle[ID]' parameter in 'csc_article_details.php'. It extracts user credentials (email and password) from the database by leveraging a UNION-based SQL injection technique.
Description
SQL injection vulnerability in csc_article_details.php in Caupo.net CaupoShop Classic 1.3 allows remote attackers to execute arbitrary SQL commands via the saArticle[ID] parameter.
Exploits (1)
This exploit targets a SQL injection vulnerability in CaupoShop Classic 1.3 via the 'saArticle[ID]' parameter in 'csc_article_details.php'. It extracts user credentials (email and password) from the database by leveraging a UNION-based SQL injection technique.