Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-5582. PoCs published by r3dm0v3.
AI-analyzed exploit summary This exploit leverages a SQL injection vulnerability in Nukedit 4.9.x to bypass authentication and create an admin user. It uses a crafted SQL query to log in and then sends a POST request to add a new admin user with specified credentials.
Description
SQL injection vulnerability in utilities/login.asp in Nukedit 4.9.x, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the email parameter.
Exploits (1)
This exploit leverages a SQL injection vulnerability in Nukedit 4.9.x to bypass authentication and create an admin user. It uses a crafted SQL query to log in and then sends a POST request to add a new admin user with specified credentials.