Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-3942. PoCs published by Hussin X.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in Full PHP Emlak Script, allowing attackers to extract admin credentials via a crafted UNION-based query. The PoC targets the 'id' parameter in 'landsee.php' to dump username and password hashes.
Description
SQL injection vulnerability in landsee.php in Full PHP Emlak Script allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in Full PHP Emlak Script, allowing attackers to extract admin credentials via a crafted UNION-based query. The PoC targets the 'id' parameter in 'landsee.php' to dump username and password hashes.