CVE-2008-6623
webbdomain post_card < 1.02 - SQL Injection via Username Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6623. PoCs published by x0r.
AI-analyzed exploit summary This exploit demonstrates an authentication bypass vulnerability in WebbDomain Web Postcards via SQL injection. The provided credentials exploit a flawed login mechanism by injecting a tautology into the username field.
Description
SQL injection vulnerability in getin.php in WEBBDOMAIN Post Card (aka Web Postcards) 1.02 and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter.
Exploits (1)
This exploit demonstrates an authentication bypass vulnerability in WebbDomain Web Postcards via SQL injection. The provided credentials exploit a flawed login mechanism by injecting a tautology into the username field.