Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-6791. PoCs published by ShaFuq31.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in Chatwm's login mechanism. It provides both manual and remote attack methods to bypass authentication by injecting SQL conditions into the username and password fields.
Description
SQL injection vulnerability in SelGruFra.asp in chatwm 1.0 allows remote attackers to execute arbitrary SQL commands via the (1) txtUse and (2) txtPas parameters.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in Chatwm's login mechanism. It provides both manual and remote attack methods to bypass authentication by injecting SQL conditions into the username and password fields.