CVE-2006-5514
Web Group Communication Center < 0.5.6b - SQL Injection via quiz.php qzid Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5514. PoCs published by ajann.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in WGCC Beta <= 0.5.6 via the 'qzid' parameter in quiz.php. It allows an attacker to extract user credentials (username, password hash, email) from the database.
Description
SQL injection vulnerability in quiz.php in Web Group Communication Center (WGCC) 0.5.6b and earlier allows remote attackers to execute arbitrary SQL commands via the qzid parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in WGCC Beta <= 0.5.6 via the 'qzid' parameter in quiz.php. It allows an attacker to extract user credentials (username, password hash, email) from the database.