CVE-2008-5132
MemHT Portal 4.0.1 - SQL Injection via X-Forwarded-For Header
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-5132. PoCs published by Ams.
AI-analyzed exploit summary This exploit targets CVE-2008-5132 in MemHT Portal 4.0.1, leveraging SQL injection via the 'X-Forwarded-For' header to write a PHP shell to the server. It includes path discovery and bruteforce mechanisms to locate the correct server path.
Description
SQL injection vulnerability in inc/ajax/ajax_rating.php in MemHT Portal 4.0.1 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header.
Exploits (1)
This exploit targets CVE-2008-5132 in MemHT Portal 4.0.1, leveraging SQL injection via the 'X-Forwarded-For' header to write a PHP shell to the server. It includes path discovery and bruteforce mechanisms to locate the correct server path.