Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-5976. PoCs published by Security Access Point.
AI-analyzed exploit summary This is a writeup describing an SQL injection-based authentication bypass and XSS vulnerability in BlogMe v3. It provides payloads for bypassing admin login and identifies vulnerable fields for XSS in the comments section.
Description
Multiple SQL injection vulnerabilities in admin_login.asp in BlogMe 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) Username or (2) Password field. NOTE: some of these details are obtained from third party information.
Exploits (1)
This is a writeup describing an SQL injection-based authentication bypass and XSS vulnerability in BlogMe v3. It provides payloads for bypassing admin login and identifies vulnerable fields for XSS in the comments section.