Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-1557. PoCs published by Morocco Security Team.
AI-analyzed exploit summary The provided text describes SQL injection vulnerabilities in X-Changer version 0.20, detailing vulnerable parameters in HTTP requests. It does not include executable exploit code but outlines attack vectors.
Description
Multiple SQL injection vulnerabilities in X-Changer 0.2 allow remote attackers to execute arbitrary SQL commands via the (1) from and (2) into parameters in a calculate action, and the (3) id parameter in an edit action to index.php.
Exploits (1)
The provided text describes SQL injection vulnerabilities in X-Changer version 0.20, detailing vulnerable parameters in HTTP requests. It does not include executable exploit code but outlines attack vectors.