Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-3377. PoCs published by cOndemned.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in phpTest 0.6.3 via the 'image_id' parameter in 'picture.php'. The lack of input validation allows an attacker to extract sensitive data such as usernames and passwords from the database.
Description
SQL injection vulnerability in picture.php in phpTest 0.6.3 allows remote attackers to execute arbitrary SQL commands via the image_id parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in phpTest 0.6.3 via the 'image_id' parameter in 'picture.php'. The lack of input validation allows an attacker to extract sensitive data such as usernames and passwords from the database.