CVE-2006-6214
Wallpaper Complete Website 1.0.09 - SQL Injection via wallpaperid Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6214. PoCs published by GregStar.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Wallpaper Complete Website 1.0.09, allowing an attacker to extract user credentials (login and password) from the database via a crafted UNION SELECT query.
Description
SQL injection vulnerability in wallpaper.php in Wallpaper Website (Wallpaper Complete Website) 1.0.09 allows remote attackers to execute arbitrary SQL commands via the wallpaperid parameter.
Exploits (1)
This exploit demonstrates a SQL injection vulnerability in Wallpaper Complete Website 1.0.09, allowing an attacker to extract user credentials (login and password) from the database via a crafted UNION SELECT query.