Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-6451. PoCs published by r45c4l.
AI-analyzed exploit summary This exploit demonstrates SQL injection in jPORTAL 2 via the 'id' parameter in humor.php, allowing unauthorized extraction of admin credentials. The PoC includes live demo URLs and variations for different table names.
Description
SQL injection vulnerability in humor.php in jPORTAL 2 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: this might overlap CVE-2004-2036 or CVE-2005-3509.
Exploits (1)
This exploit demonstrates SQL injection in jPORTAL 2 via the 'id' parameter in humor.php, allowing unauthorized extraction of admin credentials. The PoC includes live demo URLs and variations for different table names.