Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-3240. PoCs published by Hussin X.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in AlstraSoft Affiliate Network Pro, allowing an attacker to extract admin credentials via a crafted UNION-based SQL query. The PoC provides two variations of the exploit URL targeting the 'pgm' parameter.
Description
SQL injection vulnerability in index.php in AlstraSoft Affiliate Network Pro allows remote attackers to execute arbitrary SQL commands via the pgm parameter in a directory action.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in AlstraSoft Affiliate Network Pro, allowing an attacker to extract admin credentials via a crafted UNION-based SQL query. The PoC provides two variations of the exploit URL targeting the 'pgm' parameter.