CVE-2008-5057
Yigit Aybuga Dizi Portali - SQL Injection via film Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-5057. PoCs published by Kaan KAMIS.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in Dizi Portali by injecting a UNION-based query to retrieve sensitive data (e.g., passwords) from the 'ayarlar' table. The vulnerability arises from insufficient input sanitization in the 'film' parameter.
Description
SQL injection vulnerability in film.asp in Yigit Aybuga Dizi Portali allows remote attackers to execute arbitrary SQL commands via the film parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in Dizi Portali by injecting a UNION-based query to retrieve sensitive data (e.g., passwords) from the 'ayarlar' table. The vulnerability arises from insufficient input sanitization in the 'film' parameter.