Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-4175. PoCs published by SirGod.
AI-analyzed exploit summary This exploit demonstrates SQL injection vulnerabilities in Link Bid Script 1.5 via two endpoints: `upgrade.php` and `edit.php`. The PoC includes crafted SQL queries to extract database information such as version, database name, and user.
Description
Multiple SQL injection vulnerabilities in Link Bid Script 1.5 allow remote attackers to execute arbitrary SQL commands via the (1) ucat parameter to upgrade.php and the (2) id parameter to linkadmin/edit.php.
Exploits (1)
This exploit demonstrates SQL injection vulnerabilities in Link Bid Script 1.5 via two endpoints: `upgrade.php` and `edit.php`. The PoC includes crafted SQL queries to extract database information such as version, database name, and user.