CVE-2006-7012
SCart 2.0 - Remote Command Execution via scart.cgi page parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-7012. PoCs published by K-159.
AI-analyzed exploit summary This Perl script exploits a command injection vulnerability in SCart 2.0 by injecting a command into the 'page' parameter of the 'scart.cgi' script. The exploit sends an HTTP GET request with the malicious payload and prints the response.
Description
scart.cgi in SCart 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the page parameter of a show_text action.
Exploits (1)
This Perl script exploits a command injection vulnerability in SCart 2.0 by injecting a command into the 'page' parameter of the 'scart.cgi' script. The exploit sends an HTTP GET request with the malicious payload and prints the response.