Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-6365. PoCs published by Dedi Dwianto.
AI-analyzed exploit summary The provided text describes a SQL injection vulnerability in DUpaypal Pro, where the 'iPro' parameter in 'shops/detail.asp' is vulnerable due to improper input sanitization. No actual exploit code is included, only a description and example URL.
Description
SQL injection vulnerability in detail.asp in DUware DUpaypal 3.1, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the iType parameter. NOTE: the iState parameter is already covered by CVE-2005-3976 and the iPro parameter is already covered by CVE-2005-2047.
Exploits (1)
The provided text describes a SQL injection vulnerability in DUpaypal Pro, where the 'iPro' parameter in 'shops/detail.asp' is vulnerable due to improper input sanitization. No actual exploit code is included, only a description and example URL.