Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-3787. PoCs published by ~!Dok_tOR!~.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Web Directory Script <= 2.0 via the 'name' parameter in listing_view.php. It bypasses authentication to dump user credentials from the 'members' table when magic_quotes_gpc is disabled.
Description
SQL injection vulnerability in listing_view.php in Web Directory Script 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the name parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in Web Directory Script <= 2.0 via the 'name' parameter in listing_view.php. It bypasses authentication to dump user credentials from the 'members' table when magic_quotes_gpc is disabled.