Exploitation Summary
EIP tracks 2 public exploits for CVE-2006-5145. PoCs published by Hessam-x.
AI-analyzed exploit summary The provided text describes input-validation vulnerabilities (HTML-injection and SQL-injection) in OlateDownload 3.4.0, with an example URL demonstrating a potential SQLi attack vector. No actual exploit code is present.
Description
Multiple SQL injection vulnerabilities in OlateDownload 3.4.0 allow remote attackers to execute arbitrary SQL commands via the (1) page parameter in details.php or the (2) query parameter in search.php.
Exploits (2)
The provided text describes input-validation vulnerabilities (HTML-injection and SQL-injection) in OlateDownload 3.4.0, with an example URL demonstrating a potential SQLi attack vector. No actual exploit code is present.
The provided text describes SQL injection and HTML injection vulnerabilities in OlateDownload 3.4.0, with an example URL demonstrating the SQLi vector. No actual exploit code is present.