CVE-2006-0628

Dale Ray MyQuiz 1.01 - Command Injection

Title source: llm
STIX 2.1

Description

myquiz.pl in Dale Ray MyQuiz 1.01 allows remote attackers to execute arbitrary commands via shell metacharacters in the URL, which are not properly handled as part of the PATH_INFO environment variable.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Hessam-x · perlwebappscgi
https://www.exploit-db.com/exploits/1471

Scores

EPSS 0.2921
EPSS Percentile 96.6%

Details

Status published
Products (1)
dale_ray/myquiz 1.01
Published Feb 10, 2006
Tracked Since Feb 18, 2026