mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-28 15:31:27 +02:00
18 lines
678 B
Markdown
18 lines
678 B
Markdown
### [CVE-2008-1272](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1272)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Multiple SQL injection vulnerabilities in BM Classifieds 20080309 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to showad.php and the (2) ad parameter to pfriendly.php.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://www.exploit-db.com/exploits/5223
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|