Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-6741. PoCs published by Demential.
AI-analyzed exploit summary This exploit demonstrates a Cross-Site Request Forgery (CSRF) vulnerability in MkPortal's Urlobox module. By posting a crafted image tag, an attacker can trick an administrator into deleting a specific message when they view the Urlobox page.
Description
Cross-site request forgery (CSRF) vulnerability in urlobox in MKPortal allows remote attackers to delete arbitrary messages as an administrator via a delete operation in an img BBcode tag.
Exploits (1)
This exploit demonstrates a Cross-Site Request Forgery (CSRF) vulnerability in MkPortal's Urlobox module. By posting a crafted image tag, an attacker can trick an administrator into deleting a specific message when they view the Urlobox page.