Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-6115. PoCs published by snakespc.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in the 'hostindex' script's 'directory.php' file. The PoC uses a UNION-based SQLi to extract database information such as user, database name, and version.
Description
SQL injection vulnerability in directory.php in Prozilla Hosting Index allows remote attackers to execute arbitrary SQL commands via the id parameter in a deadlink action, a different vector than CVE-2008-2083.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in the 'hostindex' script's 'directory.php' file. The PoC uses a UNION-based SQLi to extract database information such as user, database name, and version.