Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-4344. PoCs published by Karar Alshami.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in 6rbScript by injecting a UNION-based query to extract sensitive data (aid, pwd, email) from the '7addad_authors' table. The attack leverages unsanitized input in the 'CatID' parameter.
Description
SQL injection vulnerability in cat.php in 6rbScript allows remote attackers to execute arbitrary SQL commands via the CatID parameter.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in 6rbScript by injecting a UNION-based query to extract sensitive data (aid, pwd, email) from the '7addad_authors' table. The attack leverages unsanitized input in the 'CatID' parameter.