CVE-2005-1026

SnailSource phpBB 2.0.x - SQL Injection

Title source: llm
STIX 2.1

Description

Multiple SQL injection vulnerabilities in SnailSource phpBB 2.0.x mods allow remote attackers to execute arbitrary SQL commands via the (1) file_id parameter to dlman.php in DLMan Pro or (2) id parameter to links.php in Linkz Pro (aka LinksLinks Pro).

Exploits (2)

exploitdb WRITEUP VERIFIED
by LovER BOY · textwebappsphp
https://www.exploit-db.com/exploits/25345
exploitdb WRITEUP VERIFIED
by LovER BOY · textwebappsphp
https://www.exploit-db.com/exploits/25344

References (5)

Core 5
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/13030
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=111272430128195&w=2
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=111271895819594&w=2
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/13028

Scores

EPSS 0.0052
EPSS Percentile 66.8%

Details

Status published
Products (2)
dlman_pro/dlman_pro 0.9.8
linkz_pro/linkz_pro 1.0.3_beta2
Published May 02, 2005
Tracked Since Feb 18, 2026