CVE-2006-6050
ClickTech Texas Rank'em - SQL Injection via selPlayer or tournament_id Parameter
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2006-6050. PoCs published by Aria-Security Team.
AI-analyzed exploit summary The provided text describes a SQL injection vulnerability in ClickTech Texas Rank'em, where the 'tournament_id' parameter in 'tournaments.asp' is not properly sanitized. It includes a generic example URL for exploitation but lacks actual exploit code.
Description
Multiple SQL injection vulnerabilities in ClickTech Texas Rank'em allow remote attackers to execute arbitrary SQL commands via the (1) selPlayer parameter to player.asp or the (2) tournament_id parameter to tournaments.asp.
Exploits (2)
The provided text describes a SQL injection vulnerability in ClickTech Texas Rank'em, where the 'tournament_id' parameter in 'tournaments.asp' is not properly sanitized. It includes a generic example URL for exploitation but lacks actual exploit code.
The provided text describes a SQL injection vulnerability in ClickTech Texas Rank'em, where the 'selPlayer' parameter in 'player.asp' is vulnerable due to insufficient input sanitization. No actual exploit code is included, only a description and an example URL.