Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-3832. PoCs published by rgod.
AI-analyzed exploit summary This exploit targets a SQL injection vulnerability in LoudBlog <= 0.5, allowing an attacker to disclose admin credentials by manipulating the 'id' parameter. It uses a UNION-based SQL injection to extract the admin's username and password hash from the database.
Description
SQL injection vulnerability in index.php in Gerrit van Aaken Loudblog 0.5 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This exploit targets a SQL injection vulnerability in LoudBlog <= 0.5, allowing an attacker to disclose admin credentials by manipulating the 'id' parameter. It uses a UNION-based SQL injection to extract the admin's username and password hash from the database.