CVE-2008-6873
Active Web Mail 4.0 - SQL Injection via TabOpenQuickTab1 Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6873. PoCs published by R3d-D3V!L.
AI-analyzed exploit summary This is a writeup describing a Blind SQL Injection vulnerability in Active Web Mail v4. It provides example URLs and payloads to demonstrate the vulnerability but does not include executable exploit code.
Description
SQL injection vulnerability in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the TabOpenQuickTab1 parameter to (1) popaccounts.aspx, (2) addressbook.aspx, and (3) emails.aspx.
Exploits (1)
This is a writeup describing a Blind SQL Injection vulnerability in Active Web Mail v4. It provides example URLs and payloads to demonstrate the vulnerability but does not include executable exploit code.