Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-4605. PoCs published by 0xFFFFFF.
AI-analyzed exploit summary This exploit demonstrates SQL injection vulnerabilities in CafeEngine and Easy-CafeEngine by injecting malicious SQL queries via the 'id' parameter in dish.php, menu.php, and index.php pages. It retrieves database version information through UNION-based SQLi.
Description
SQL injection vulnerability in CafeEngine allows remote attackers to execute arbitrary SQL commands via the id parameter to (1) dish.php and (2) menu.php.
Exploits (1)
This exploit demonstrates SQL injection vulnerabilities in CafeEngine and Easy-CafeEngine by injecting malicious SQL queries via the 'id' parameter in dish.php, menu.php, and index.php pages. It retrieves database version information through UNION-based SQLi.