Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-5774. PoCs published by AlpHaNiX.
AI-analyzed exploit summary This exploit demonstrates SQL injection vulnerabilities in Home Builder V1.0 and V2.0 by injecting UNION-based SQL queries to extract data from the 'users' table. The PoC provides direct URLs with malicious SQL payloads.
Description
Multiple SQL injection vulnerabilities in ASPSiteWare HomeBuilder 1.0 and 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) iType parameter to (a) type.asp and (b) type2.asp and the (2) iPro parameter to (c) detail.asp.
Exploits (1)
This exploit demonstrates SQL injection vulnerabilities in Home Builder V1.0 and V2.0 by injecting UNION-based SQL queries to extract data from the 'users' table. The PoC provides direct URLs with malicious SQL payloads.