Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-3306.
AI-analyzed exploit summary The exploit demonstrates multiple vulnerabilities in YouTube Blog 0.1, including SQL injection, XSS, and RFI. It provides direct URLs to exploit these vulnerabilities, making it a functional proof-of-concept.
Description
SQL injection vulnerability in info.php in C. Desseno YouTube Blog (ytb) 0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2008-3307. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
The exploit demonstrates multiple vulnerabilities in YouTube Blog 0.1, including SQL injection, XSS, and RFI. It provides direct URLs to exploit these vulnerabilities, making it a functional proof-of-concept.