Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-4604. PoCs published by 0xFFFFFF.
AI-analyzed exploit summary This exploit demonstrates SQL injection vulnerabilities in CafeEngine and Easy-CafeEngine by injecting malicious SQL queries via the 'id' parameter in dish.php, menu.php, and index.php pages. It retrieves database version information through UNION-based SQLi.
Description
SQL injection vulnerability in index.php in Easy CafeEngine 1.1 allows remote attackers to execute arbitrary SQL commands via the itemid parameter.
Exploits (1)
This exploit demonstrates SQL injection vulnerabilities in CafeEngine and Easy-CafeEngine by injecting malicious SQL queries via the 'id' parameter in dish.php, menu.php, and index.php pages. It retrieves database version information through UNION-based SQLi.