CVE-2005-3423

Subdreamer 2.2.1 - SQL Injection via Loginusername Parameter or Cookies

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2005-3423. PoCs published by RusH.

AI-analyzed exploit summary This exploit targets CVE-2005-3423, a SQL injection vulnerability in Subdreamer 2.2.1. It performs blind SQL injection to extract user passwords, checks for admin access, and uploads a malicious PHP file to achieve remote command execution.

Description

Multiple SQL injection vulnerabilities in Subdreamer 2.2.1 allow remote attackers to execute arbitrary SQL commands via (1) the loginusername parameter or (2) cookies to (a) subdreamer.php, (b) ipb2.php, (c) phpbb2.php, (d) vbulletin2.php, and (e) vbulletin3.php.

Exploits (1)

exploitdb WORKING POC VERIFIED
by RusH · perlwebappsphp
https://www.exploit-db.com/exploits/1278

This exploit targets CVE-2005-3423, a SQL injection vulnerability in Subdreamer 2.2.1. It performs blind SQL injection to extract user passwords, checks for admin access, and uploads a malicious PHP file to achieve remote command execution.

Classification
Working Poc 95%
Attack Type
Sqli
Complexity
Moderate
Reliability
Reliable
Target: Subdreamer 2.2.1
No auth needed
Prerequisites: Target must be running Subdreamer 2.2.1 · SQL injection vulnerability must be present
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (9)

Core 9
Core References
Vendor Advisory x_refsource_misc
http://rst.void.ru/papers/advisory35.txt
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/20379
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/20380
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/20382
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/20378
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/20381
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/17378
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/15238
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/20384

Scores

EPSS 0.0217
EPSS Percentile 79.9%

Details

Status published
Products (1)
subdreamer/subdreamer 2.2.1
Published Nov 01, 2005
Tracked Since Feb 18, 2026