CVE-2005-0858
CoolForum < 0.8 - SQL Injection via Pseudo or Login Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-0858. PoCs published by Romano.
AI-analyzed exploit summary The provided text describes SQL injection and XSS vulnerabilities in CoolForum, with an example SQL injection payload. However, it lacks executable exploit code, making it a vulnerability writeup rather than a functional PoC.
Description
Multiple SQL injection vulnerabilities in CoolForum 0.8 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the pseudo parameter to entete.php or (2) the login parameter to register.php.
Exploits (1)
The provided text describes SQL injection and XSS vulnerabilities in CoolForum, with an example SQL injection payload. However, it lacks executable exploit code, making it a vulnerability writeup rather than a functional PoC.