Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-6266. PoCs published by Beenu Arora.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in phpWebSite by injecting a UNION-based SQL query to extract database version, name, and user information. The vulnerability arises from insufficient input sanitization in the 'cid' parameter.
Description
SQL injection vulnerability in links.php in Appalachian State University phpWebSite allows remote attackers to execute arbitrary SQL commands via the cid parameter in a viewlink action.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in phpWebSite by injecting a UNION-based SQL query to extract database version, name, and user information. The vulnerability arises from insufficient input sanitization in the 'cid' parameter.