CVE-2008-3034
rss_aggregator 1.0 - SQL Injection via IdFlux or IdTag Parameter
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2008-3034. PoCs published by CWH Underground.
AI-analyzed exploit summary The provided text describes SQL injection and authentication bypass vulnerabilities in RSS-aggregator 1.0, with an example URL demonstrating the SQL injection point. No actual exploit code is included.
Description
Multiple SQL injection vulnerabilities in RSS-aggregator 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) IdFlux parameter to admin/fonctions/supprimer_flux.php and the (2) IdTag parameter to admin/fonctions/supprimer_tag.php.
Exploits (2)
The provided text describes SQL injection and authentication bypass vulnerabilities in RSS-aggregator 1.0, with an example URL demonstrating the SQL injection point. No actual exploit code is included.
The provided text describes SQL injection and authentication bypass vulnerabilities in RSS-aggregator 1.0, with an example URL demonstrating the SQL injection point. No actual exploit code is included.