Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-5951. PoCs published by ZoRLu.
AI-analyzed exploit summary This is a writeup detailing SQL injection and direct database download vulnerabilities in ASP Template Creature. It provides URLs for exploiting SQLi to dump admin credentials and a direct path to download the database file.
Description
ASP Template Creature stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for workDB/templatemonster.mdb.
Exploits (1)
This is a writeup detailing SQL injection and direct database download vulnerabilities in ASP Template Creature. It provides URLs for exploiting SQLi to dump admin credentials and a direct path to download the database file.