Exploitation Summary
EIP tracks 2 public exploits for CVE-2008-5779. PoCs published by nuclear.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Free Links Directory Script, allowing an attacker to extract user credentials via a UNION-based attack. The PoC provides a direct URL with a malicious SQL query to dump usernames and passwords.
Description
SQL injection vulnerability in lpro.php in Free Links Directory Script (FLDS) 1.2a allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (2)
This exploit demonstrates a SQL injection vulnerability in Free Links Directory Script, allowing an attacker to extract user credentials via a UNION-based attack. The PoC provides a direct URL with a malicious SQL query to dump usernames and passwords.
This exploit demonstrates a SQL injection vulnerability in Free Links Directory Script via the 'id' parameter in redir.php. The PoC shows how to extract database version information using a UNION-based SQLi attack.