CVE-2006-3402
VirtuaStore 2.0 - SQL Injection via Login Password Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-3402. PoCs published by supermalhacao.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in VirtuaStore, where unsanitized input in the password field can be exploited using a basic SQLi payload. No actual exploit code is present, only a description and example payload.
Description
SQL injection vulnerability in VirtuaStore 2.0 allows remote attackers to execute arbitrary SQL commands via the password parameter when logging in.
Exploits (1)
The provided text describes an SQL injection vulnerability in VirtuaStore, where unsanitized input in the password field can be exploited using a basic SQLi payload. No actual exploit code is present, only a description and example payload.