CVE-2008-7099
Qsoft K-Rate Premium - Remote Code Execution via Manage Templates Feature
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-7099. PoCs published by Corwin.
AI-analyzed exploit summary The exploit demonstrates SQL injection and XSS vulnerabilities in K-Rate, a picture rating script. It includes functional SQLi payloads for extracting database information and XSS payloads for cookie theft.
Description
Unspecified vulnerability in the Manage Templates feature in Qsoft K-Rate Premium allows remote attackers to execute arbitrary PHP code via unknown vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
The exploit demonstrates SQL injection and XSS vulnerabilities in K-Rate, a picture rating script. It includes functional SQLi payloads for extracting database information and XSS payloads for cookie theft.