cve/2006/CVE-2006-3963.md
2024-06-18 02:51:15 +02:00

792 B

CVE-2006-3963

Description

Multiple SQL injection vulnerabilities in Banex PHP MySQL Banner Exchange 2.21 allow remote attackers to execute arbitrary SQL commands via the (1) site_name parameter to (a) signup.php, and the (2) id, (3) deleteuserbanner, (4) viewmem, (5) viewmemunb, (6) viewunmem,or (7) deleteuser parameters to (b) admin.php.

POC

Reference

Github

No PoCs found on GitHub currently.