CVE-2008-6813
phpWebNews 0.2 MySQL Edition - SQL Injection via id_kat Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6813. PoCs published by storm.
AI-analyzed exploit summary This exploit demonstrates a classic SQL injection vulnerability in phpWebNews v0.2 MySQL Edition. The 'id_kat' parameter is not sanitized, allowing an attacker to inject malicious SQL queries to extract sensitive information such as user credentials.
Description
SQL injection vulnerability in index.php in phpWebNews 0.2 MySQL Edition allows remote attackers to execute arbitrary SQL commands via the id_kat parameter.
Exploits (1)
This exploit demonstrates a classic SQL injection vulnerability in phpWebNews v0.2 MySQL Edition. The 'id_kat' parameter is not sanitized, allowing an attacker to inject malicious SQL queries to extract sensitive information such as user credentials.