Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-6414. PoCs published by WarGame.
AI-analyzed exploit summary The exploit describes SQL injection vulnerabilities in the 'dol storye' application due to insufficient sanitization of user-supplied data in the 'id_doc' and 'id_aut' parameters. It provides example URLs to demonstrate the vulnerability but lacks executable code.
Description
Multiple SQL injection vulnerabilities in dettaglio.asp in dol storye allow remote attackers to execute arbitrary SQL commands via the (1) id_doc or (2) id_aut parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
The exploit describes SQL injection vulnerabilities in the 'dol storye' application due to insufficient sanitization of user-supplied data in the 'id_doc' and 'id_aut' parameters. It provides example URLs to demonstrate the vulnerability but lacks executable code.