Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-1395. PoCs published by kspecial.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in MySQL Based Message Board, where user-supplied input is not properly sanitized. The example URL demonstrates how an attacker could exploit this by manipulating query parameters.
Description
SQL injection vulnerability in mb.cgi in Cholod MySQL Based Message Board allows remote attackers to execute arbitrary SQL commands via unspecified vectors in a showmessage action, possibly the username parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
Exploits (1)
The provided text describes an SQL injection vulnerability in MySQL Based Message Board, where user-supplied input is not properly sanitized. The example URL demonstrates how an attacker could exploit this by manipulating query parameters.