Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-6653. PoCs published by cO2.
AI-analyzed exploit summary This Perl script exploits a blind SQL injection vulnerability in Joomla's com_webhosting component (CVE-2008-6653). It automates the extraction of data (e.g., usernames) from the database by leveraging time-based or boolean-based blind SQLi techniques.
Description
SQL injection vulnerability in webhosting.php in the Webhosting Component (com_webhosting) module before 1.1 RC7 for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.
Exploits (1)
This Perl script exploits a blind SQL injection vulnerability in Joomla's com_webhosting component (CVE-2008-6653). It automates the extraction of data (e.g., usernames) from the database by leveraging time-based or boolean-based blind SQLi techniques.