CVE-2006-5446
Casinosoft Casino Script 3.2 - SQL Injection via cfam Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5446. PoCs published by G1UK.
AI-analyzed exploit summary This Perl script exploits an SQL injection vulnerability in Casinosoft Casino Script 3.2 by manipulating the 'cfam' parameter to update the user's cash balance. It automates registration, login, and cash modification via crafted HTTP POST requests.
Description
SQL injection vulnerability in lobby/config.php in Casinosoft Casino Script (aka Masvet) 3.2 allows remote attackers to execute arbitrary SQL commands via the cfam parameter.
Exploits (1)
This Perl script exploits an SQL injection vulnerability in Casinosoft Casino Script 3.2 by manipulating the 'cfam' parameter to update the user's cash balance. It automates registration, login, and cash modification via crafted HTTP POST requests.