Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-2904. PoCs published by anonymous.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in PHPMyCart's shop.php via the 'cat' parameter. The PoC shows how an attacker can extract sensitive database information, including user credentials and system details, by manipulating the SQL query.
Description
SQL injection vulnerability in shop.php in Conkurent PHPMyCart allows remote attackers to execute arbitrary SQL commands via the cat parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in PHPMyCart's shop.php via the 'cat' parameter. The PoC shows how an attacker can extract sensitive database information, including user credentials and system details, by manipulating the SQL query.