Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-3420. PoCs published by dun.
AI-analyzed exploit summary This exploit demonstrates SQL injection vulnerabilities in Mobius Web Publishing Software versions <= 1.4.4.1. It provides specific URLs to exploit the vulnerabilities in browse.php and detail.php, allowing unauthorized data extraction from the Webusers table.
Description
Multiple SQL injection vulnerabilities in Mobius for Mimsy XG 1 1.4.4.1 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to browse.php or (2) the s parameter in an exhibitions action to detail.php.
Exploits (1)
This exploit demonstrates SQL injection vulnerabilities in Mobius Web Publishing Software versions <= 1.4.4.1. It provides specific URLs to exploit the vulnerabilities in browse.php and detail.php, allowing unauthorized data extraction from the Webusers table.