Record summary

CVE-2001-0527 has a selected CVSS score of 10.0; EIP currently links 1 catalogued exploit.

Description

DCScripts DCForum versions 2000 and earlier allow a remote attacker to gain additional privileges by inserting pipe symbols (|) and newlines into the last name in the registration form, which will create an extra entry in the registration database.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBDCForum 6.0 - Remote Admin Privilege Arbitrary CommandsExploitDB exploitby Franklin DeMattoNot analyzed1 file
ExploitDB

PoC details

References

6