Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-3161. PoCs published by CrAzY CrAcKeR.
AI-analyzed exploit summary The provided text describes a SQL injection vulnerability in the saphplesson module, where unsanitized user input in the 'Page' parameter of showcat.php can be exploited. The example URL demonstrates a basic SQLi payload but lacks executable code.
Description
SQL injection vulnerability in misc.php in SaphpLesson 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the action parameter.
Exploits (1)
The provided text describes a SQL injection vulnerability in the saphplesson module, where unsanitized user input in the 'Page' parameter of showcat.php can be exploited. The example URL demonstrates a basic SQLi payload but lacks executable code.