CVE-2008-5222
dvbbs 8.2.0 - SQL Injection via login.asp Username Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-5222. PoCs published by hackerbinhphuoc.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in dvbbs 8.2 by injecting a malicious query into the 'username' parameter. The payload attempts to extract information from the 'dv_admin' table by checking for usernames starting with 'a'.
Description
SQL injection vulnerability in login.asp in Dvbbs 8.2.0 allows remote attackers to execute arbitrary SQL commands via the username parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in dvbbs 8.2 by injecting a malicious query into the 'username' parameter. The payload attempts to extract information from the 'dv_admin' table by checking for usernames starting with 'a'.