CVE-2008-6776
Scripts For Sites EZ Hot or Not - SQL Injection via viewcomments.php phid Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6776. PoCs published by d3b4g.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in SFS EZ Hot or Not via the 'phid' parameter in viewcomments.php. It allows an attacker to extract sensitive information such as admin credentials and database version.
Description
SQL injection vulnerability in viewcomments.php in Scripts For Sites (SFS) EZ Hot or Not allows remote attackers to execute arbitrary SQL commands via the phid parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in SFS EZ Hot or Not via the 'phid' parameter in viewcomments.php. It allows an attacker to extract sensitive information such as admin credentials and database version.