CVE-2006-0801
PostNuke < 0.761 - SQL Injection via NS-Languages Module Language Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-0801. PoCs published by Maksymilian Arciemowicz.
AI-analyzed exploit summary The provided text describes a SQL injection vulnerability in PostNuke's 'NS-Languages' module due to improper input sanitization. It outlines potential impacts but does not include executable exploit code.
Description
SQL injection vulnerability in the NS-Languages module for PostNuke 0.761 and earlier, when magic_quotes_gpc is off, allows remote attackers to execute arbitrary SQL commands via the language parameter to admin.php.
Exploits (1)
The provided text describes a SQL injection vulnerability in PostNuke's 'NS-Languages' module due to improper input sanitization. It outlines potential impacts but does not include executable exploit code.