Description
Multiple SQL injection vulnerabilities in Nuked Klan 1.7 allow remote attackers to execute arbitrary SQL commands via the (1) forum_id or (2) thread_id parameter in the Forum file, (3) the link_id in the Links file, (4) the artid parameter in the Sections file, and (5) the dl_id parameter in the Download file.
Exploits (4)
exploitdb
WORKING POC
VERIFIED
by papipsycho · perlwebappsphp
https://www.exploit-db.com/exploits/26389
exploitdb
WORKING POC
VERIFIED
by papipsycho · textwebappsphp
https://www.exploit-db.com/exploits/26386
References (12)
Scores
EPSS
0.0349
EPSS Percentile
87.6%
Details
Status
published
Products (1)
nuked-klan/nuked-klan
1.7
Published
Oct 26, 2005
Tracked Since
Feb 18, 2026