CVE-2006-0851
ilchClan 1.05g - SQL Injection via Forum Module pid Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-0851. PoCs published by x128.
AI-analyzed exploit summary This exploit targets a SQL injection vulnerability in IlchClan 1.05g, specifically in the forum module. It extracts user credentials (password and name) via a UNION-based SQLi attack and saves the output to an HTML file.
Description
SQL injection vulnerability in the forum module of ilchClan 1.05g and earlier allows remote attackers to execute arbitrary SQL commands via the pid parameter, when creating a newpost.
Exploits (1)
This exploit targets a SQL injection vulnerability in IlchClan 1.05g, specifically in the forum module. It extracts user credentials (password and name) via a UNION-based SQLi attack and saves the output to an HTML file.