Exploitation Summary
EIP tracks 2 public exploits for CVE-2008-5632. PoCs published by AlpHaNiX.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Active Timebilling software. It provides credentials to bypass authentication by injecting SQL code into the username and password fields.
Description
SQL injection vulnerability in Account.asp in Active Time Billing 3.2 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters, possibly related to start.asp. NOTE: some of these details are obtained from third party information.
Exploits (2)
This exploit demonstrates a SQL injection vulnerability in Active Timebilling software. It provides credentials to bypass authentication by injecting SQL code into the username and password fields.
This exploit demonstrates an authentication bypass and remote SQL injection vulnerability in Active Force Matrix v2. It provides a simple payload to bypass login authentication via SQL injection.