cve/2006/CVE-2006-6524.md
2024-06-18 02:51:15 +02:00

634 B

CVE-2006-6524

Description

SQL injection vulnerability in vdateUsr.asp in EzHRS HR Assist 1.05 and earlier allows remote attackers to execute arbitrary SQL commands via the Uname (UserName) parameter.

POC

Reference

Github

No PoCs found on GitHub currently.