CVE-2008-6227
Pre Multi-Vendor Shopping Malls - SQL Injection via buyer_detail.php sid/cid Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6227. PoCs published by G4N0K.
AI-analyzed exploit summary This exploit demonstrates insecure cookie handling and SQL injection vulnerabilities in Pre Multi-Vendor Shopping Malls. It includes proof-of-concept URLs for SQLi attacks to extract database information and admin credentials.
Description
SQL injection vulnerability in buyer_detail.php in Pre Multi-Vendor Shopping Malls allows remote attackers to execute arbitrary SQL commands via the (1) sid and (2) cid parameters.
Exploits (1)
This exploit demonstrates insecure cookie handling and SQL injection vulnerabilities in Pre Multi-Vendor Shopping Malls. It includes proof-of-concept URLs for SQLi attacks to extract database information and admin credentials.