Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-3750. PoCs published by Hussin X.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in URL Rotator software, allowing an attacker to extract admin credentials via a crafted UNION-based SQL query. The PoC includes a live demo URL and a payload that concatenates username and password fields from the 'adminsettings' table.
Description
SQL injection vulnerability in tr.php in YourFreeWorld URL Rotator Script allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in URL Rotator software, allowing an attacker to extract admin credentials via a crafted UNION-based SQL query. The PoC includes a live demo URL and a payload that concatenates username and password fields from the 'adminsettings' table.