PoC Index

CVE-2006-1000

HIGH 10.0EPSS 3.4%

Multiple SQL injection vulnerabilities in Pentacle In-Out Board 3.0 and earlier allow remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) newsid parameter to newsdetailsview.asp and (2) password parameter to login.asp.

CVSS v2.0
10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS
3.39% chance of exploitation in the next 30 days, 88th percentile
Published
2006-03-06
Updated
2024-08-07

Proof-of-concept exploits (2)

ExploitDB entries (1)

References

Related