Description
Multiple SQL injection vulnerabilities in SnailSource phpBB 2.0.x mods allow remote attackers to execute arbitrary SQL commands via the (1) file_id parameter to dlman.php in DLMan Pro or (2) id parameter to links.php in Linkz Pro (aka LinksLinks Pro).
Exploits (2)
References (5)
Core 5
Core References
Exploit vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/13030
Mailing List mailing-list
x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=111272430128195&w=2
Mailing List mailing-list
x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=111271895819594&w=2
Exploit vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/13028
Various Sources x_refsource_confirm
http://www.snailsource.com/forum/dlman.php?func=file_info&file_id=77
Scores
EPSS
0.0052
EPSS Percentile
66.8%
Details
Status
published
Products (2)
dlman_pro/dlman_pro
0.9.8
linkz_pro/linkz_pro
1.0.3_beta2
Published
May 02, 2005
Tracked Since
Feb 18, 2026