CVE-2005-3816
freeForum < 1.1 - SQL Injection via Cat or Thread Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-3816. PoCs published by r0t3d3Vil.
AI-analyzed exploit summary The provided text describes SQL injection vulnerabilities in freeForum, detailing vulnerable parameters ('cat' and 'thread') but does not include executable exploit code. It references a SecurityFocus advisory and outlines potential impacts.
Description
Multiple SQL injection vulnerabilities in forum.php in freeForum 1.1 and earlier and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter or (2) thread parameter in thread mode.
Exploits (1)
The provided text describes SQL injection vulnerabilities in freeForum, detailing vulnerable parameters ('cat' and 'thread') but does not include executable exploit code. It references a SecurityFocus advisory and outlines potential impacts.