Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-3347. PoCs published by x128.
AI-analyzed exploit summary This exploit targets a SQL injection vulnerability in DZCP 1.34, allowing an authenticated attacker to extract user credentials by manipulating the 'id' parameter in a message-related query. The script uses cURL to automate authentication and exploit execution.
Description
SQL injection vulnerability in index.php in deV!Lz Clanportal DZCP 1.3.4 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This exploit targets a SQL injection vulnerability in DZCP 1.34, allowing an authenticated attacker to extract user credentials by manipulating the 'id' parameter in a message-related query. The script uses cURL to automate authentication and exploit execution.