Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-4642. PoCs published by TurkishWarriorr.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in AstroSPACES' profile.php, allowing an attacker to dump user credentials via a UNION-based SQLi attack. The payload extracts usernames and passwords from the 'users' table.
Description
SQL injection vulnerability in profile.php in AstroSPACES 1.1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in AstroSPACES' profile.php, allowing an attacker to dump user credentials via a UNION-based SQLi attack. The payload extracts usernames and passwords from the 'users' table.