Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-3513. PoCs published by H4ckCity Security Team.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in the Book Catalog module for PHP-Nuke. It allows an attacker to extract sensitive information such as passwords and author IDs from the database by manipulating the 'catid' parameter.
Description
SQL injection vulnerability in the Book Catalog module 1.0 for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the catid parameter in a category action to modules.php.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in the Book Catalog module for PHP-Nuke. It allows an attacker to extract sensitive information such as passwords and author IDs from the database by manipulating the 'catid' parameter.