CVE-2006-6161
Liberum Help Desk <= 0.97.3 - SQL Injection via id or uid Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6161. PoCs published by Cold Zero.
AI-analyzed exploit summary The exploit demonstrates SQL injection and database disclosure vulnerabilities in Liberum Help Desk. The SQL injection allows password resets via crafted input in the 'forgotpass.asp' page, while the database disclosure exposes the 'helpdesk2000.mdb' file directly.
Description
Multiple SQL injection vulnerabilities in Doug Luxem Liberum Help Desk 0.97.3 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id and (2) uid parameter to (a) inout/status.asp, (b) inout/update.asp, and (c) forgotpass.asp. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
The exploit demonstrates SQL injection and database disclosure vulnerabilities in Liberum Help Desk. The SQL injection allows password resets via crafted input in the 'forgotpass.asp' page, while the database disclosure exposes the 'helpdesk2000.mdb' file directly.