Exploitation Summary
EIP tracks 2 public exploits for CVE-2006-1954. PoCs published by GroundZero Security.
AI-analyzed exploit summary This is a writeup describing remote file inclusion and SQL injection vulnerabilities in RechnungsZentrale V2. It provides example URLs and payloads but does not include executable exploit code.
Description
SQL injection vulnerability in authent.php4 in Nicolas Fischer (aka NFec) RechnungsZentrale V2 1.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the User field.
Exploits (2)
This is a writeup describing remote file inclusion and SQL injection vulnerabilities in RechnungsZentrale V2. It provides example URLs and payloads but does not include executable exploit code.
The provided text describes an SQL injection vulnerability in RechnungsZentrale V2, with an example payload for authentication bypass. No actual exploit code is present, only a description and a basic example.