CVE-2006-0628

Dale Ray MyQuiz 1.01 - Command Injection

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2006-0628. PoCs published by Hessam-x.

AI-analyzed exploit summary This Perl script exploits a command injection vulnerability in MyQuiz by appending arbitrary commands to the URL path. It uses LWP::Simple to send HTTP requests to the target, executing the provided command.

Description

myquiz.pl in Dale Ray MyQuiz 1.01 allows remote attackers to execute arbitrary commands via shell metacharacters in the URL, which are not properly handled as part of the PATH_INFO environment variable.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Hessam-x · perlwebappscgi
https://www.exploit-db.com/exploits/1471

This Perl script exploits a command injection vulnerability in MyQuiz by appending arbitrary commands to the URL path. It uses LWP::Simple to send HTTP requests to the target, executing the provided command.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: MyQuiz (version not specified)
No auth needed
Prerequisites: Target with vulnerable MyQuiz installation · Network access to the target
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (10)

Core 10
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/24501
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/22925
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/424266/100/0/threaded
Exploit, Patch, Vendor Advisory x_refsource_misc
http://www.evuln.com/vulns/57/summary.html
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/423921/100/0/threaded
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/0443
Various Sources mailing-list x_refsource_vim
http://attrition.org/pipermail/vim/2006-February/000537.html
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/409
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/18737

Scores

EPSS 0.0560
EPSS Percentile 91.9%

Details

Status published
Products (1)
dale_ray/myquiz 1.01
Published Feb 10, 2006
Tracked Since Feb 18, 2026