D3vil-0x1

5 exploits Active since Mar 2006
CVE-2006-0959 EXPLOITDB text WORKING POC
Mybulletinboard - SQL Injection
SQL injection vulnerability in misc.php in MyBulletinBoard (MyBB) 1.03, when register_globals is enabled, allows remote attackers to execute arbitrary SQL commands by setting the comma variable value via the comma parameter in a cookie. NOTE: 1.04 has also been reported to be affected.
CVE-2006-0959 EXPLOITDB perl WORKING POC
Mybulletinboard - SQL Injection
SQL injection vulnerability in misc.php in MyBulletinBoard (MyBB) 1.03, when register_globals is enabled, allows remote attackers to execute arbitrary SQL commands by setting the comma variable value via the comma parameter in a cookie. NOTE: 1.04 has also been reported to be affected.
CVE-2006-2034 EXPLOITDB perl WORKING POC
Flexbb - SQL Injection
SQL injection vulnerability in function/showprofile.php in FlexBB 0.5.5 allows remote attackers to execute arbitrary SQL commands, and view all usernames and passwords, via the id parameter to the showprofile page in index.php.
CVE-2006-1978 EXPLOITDB perl WORKING POC
Flexbb < 0.5.5 - SQL Injection
SQL injection vulnerability in inc/start.php in FlexBB 0.5.5 and earlier allows remote attackers to execute arbitrary SQL commands via the flexbb_username COOKIE parameter.
EIP-2026-105219 EXPLOITDB text WRITEUP
ArabPortal 2.0.1 - Multiple Input Validation Vulnerabilities