Files
CVEs-PoC/2008/CVE-2008-2535.md
T
2024-06-18 02:51:15 +02:00

18 lines
748 B
Markdown

### [CVE-2008-2535](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2535)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Multiple SQL injection vulnerabilities in Phoenix View CMS Pre Alpha2 and earlier allow remote attackers to execute arbitrary SQL commands via the del parameter to (1) gbuch.admin.php, (2) links.admin.php, (3) menue.admin.php, (4) news.admin.php, and (5) todo.admin.php in admin/module/.
### POC
#### Reference
- https://www.exploit-db.com/exploits/5578
#### Github
No PoCs found on GitHub currently.