CVE-2008-6466
Akira Powered Image Gallery 0.9.6.2 - SQL Injection via Image Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6466. PoCs published by boom3rang.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in the e107 Plugin Akira Powered's Image Gallery. The PoC uses a UNION-based SQL injection to extract user credentials from the e107_user table.
Description
SQL injection vulnerability in image_gallery.php in the Akira Powered Image Gallery (image_gallery) plugin 0.9.6.2 for e107 allows remote attackers to execute arbitrary SQL commands via the image parameter in an image-detail action.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in the e107 Plugin Akira Powered's Image Gallery. The PoC uses a UNION-based SQL injection to extract user credentials from the e107_user table.