Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-4892. PoCs published by ajann.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Techno Dreams FAQ Manager Package v1.0 via the 'key' parameter in faqview.asp. It allows an attacker to extract admin credentials from the database using a UNION-based SQL injection.
Description
SQL injection vulnerability in faqview.asp in Techno Dreams FAQ Manager Package 1.0 allows remote attackers to execute arbitrary SQL commands via the key parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in Techno Dreams FAQ Manager Package v1.0 via the 'key' parameter in faqview.asp. It allows an attacker to extract admin credentials from the database using a UNION-based SQL injection.