CVE-2005-3518
PunBB 1.2.7-1.2.8 - SQL Injection via Old Searches Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-3518. PoCs published by Devil_box.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in PunBB, where user-supplied input via the 'old_searches[]' parameter is not properly sanitized. The example URL demonstrates how an attacker could exploit this to inject malicious SQL queries.
Description
SQL injection vulnerability in search.php in PunBB 1.2.7 and 1.2.8 allows remote attackers to execute arbitrary SQL commands via the old_searches parameter.
Exploits (1)
The provided text describes an SQL injection vulnerability in PunBB, where user-supplied input via the 'old_searches[]' parameter is not properly sanitized. The example URL demonstrates how an attacker could exploit this to inject malicious SQL queries.