Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-4517. PoCs published by Piker.
AI-analyzed exploit summary This Perl script exploits a SQL injection vulnerability in geccBBlite Forums to read arbitrary files from the server. It constructs a malicious SQL query via the 'id' parameter in 'leggi.php' and uses the 'load_file' function to retrieve the file content.
Description
SQL injection vulnerability in leggi.php in geccBBlite 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This Perl script exploits a SQL injection vulnerability in geccBBlite Forums to read arbitrary files from the server. It constructs a malicious SQL query via the 'id' parameter in 'leggi.php' and uses the 'load_file' function to retrieve the file content.