mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-30 21:39:29 +02:00
790 B
790 B
CVE-2006-0135
Description
SQL injection vulnerability in login.php in TheWebForum (twf) 1.2.1 allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the username parameter (aka the u variable).
POC
Reference
- http://evuln.com/vulns/17/exploit.html
- http://evuln.com/vulns/17/exploit.html
- http://evuln.com/vulns/17/summary.html
- http://evuln.com/vulns/17/summary.html
Github
No PoCs found on GitHub currently.