Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-5140. PoCs published by Trex.
AI-analyzed exploit summary This exploit targets a SQL injection vulnerability in PHP Krazy Image Host Script by manipulating the 'id' parameter in 'display.php'. It constructs a UNION-based SQL injection payload to extract data from the database.
Description
SQL injection vulnerability in display.php in Lappy512 PHP Krazy Image Host Script (phpkimagehost) 0.7a allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This exploit targets a SQL injection vulnerability in PHP Krazy Image Host Script by manipulating the 'id' parameter in 'display.php'. It constructs a UNION-based SQL injection payload to extract data from the database.