Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-6026. PoCs published by r45c4l.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in BlueCUBE CMS by injecting a UNION-based query to extract database version, name, and user information. The PoC is a simple URL-based attack that leverages unsanitized input in the 'id' parameter.
Description
SQL injection vulnerability in tienda.php in BlueCUBE CMS allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in BlueCUBE CMS by injecting a UNION-based query to extract database version, name, and user information. The PoC is a simple URL-based attack that leverages unsanitized input in the 'id' parameter.