PoC Index

CVE-2006-2034

HIGH 7.5EPSS 2.3%

SQL injection vulnerability in function/showprofile.php in FlexBB 0.5.5 allows remote attackers to execute arbitrary SQL commands, and view all usernames and passwords, via the id parameter to the showprofile page in index.php.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
2.31% chance of exploitation in the next 30 days, 82th percentile
Published
2006-04-26
Updated
2024-08-07

Proof-of-concept exploits (1)

ExploitDB entries (1)

References

Related