CVE-2008-6233
Five Dollar Scripts Drinks - SQL Injection via recid Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6233. PoCs published by Ex Tacy.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in the 'Drinks' script, allowing an attacker to extract admin credentials via a UNION-based attack. The PoC targets the 'recid' parameter in index.php to dump usernames and passwords from the 'drinksadmin' table.
Description
SQL injection vulnerability in index.php in Five Dollar Scripts Drinks script allows remote attackers to execute arbitrary SQL commands via the recid parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in the 'Drinks' script, allowing an attacker to extract admin credentials via a UNION-based attack. The PoC targets the 'recid' parameter in index.php to dump usernames and passwords from the 'drinksadmin' table.