Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-5588. PoCs published by AlpHaNiX.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in the 'rankup.asp' page of the RankEm software. The PoC uses the 'convert(int,(select...))' technique to bypass basic input filtering and extract database information such as version and credentials.
Description
SQL injection vulnerability in rankup.asp in Katy Whitton RankEm allows remote attackers to execute arbitrary SQL commands via the siteID parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in the 'rankup.asp' page of the RankEm software. The PoC uses the 'convert(int,(select...))' technique to bypass basic input filtering and extract database information such as version and credentials.