Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-5648. PoCs published by ZoRLu.
AI-analyzed exploit summary This exploit demonstrates an authentication bypass vulnerability in phpShop by DeltaScripts via SQL injection in the login form. The payload manipulates the username field to bypass authentication, allowing unauthorized access to the admin panel.
Description
SQL injection vulnerability in admin/login.php in DeltaScripts PHP Shop 1.0 allows remote attackers to execute arbitrary SQL commands via the admin_username parameter. NOTE: some of these details are obtained from third party information.
Exploits (1)
This exploit demonstrates an authentication bypass vulnerability in phpShop by DeltaScripts via SQL injection in the login form. The payload manipulates the username field to bypass authentication, allowing unauthorized access to the admin panel.