CVE-2006-6021
BestWebApp Dating Site - SQL Injection via Login Username and Password Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6021. PoCs published by laurent gaffie.
AI-analyzed exploit summary This exploit demonstrates SQL injection and authentication bypass in BestWebApp Dating Site by injecting malicious input into the username and password fields. The payload bypasses authentication by manipulating the SQL query logic.
Description
SQL injection vulnerability in the login component in BestWebApp Dating Site allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) passwd parameters.
Exploits (1)
This exploit demonstrates SQL injection and authentication bypass in BestWebApp Dating Site by injecting malicious input into the username and password fields. The payload bypasses authentication by manipulating the SQL query logic.