CVE-2005-3916
WSN Forum 1.21 - SQL Injection via Memberlist Profile ID Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-3916. PoCs published by r0t.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in WSN Forum, where the 'id' parameter in memberlist.php is not properly sanitized. It includes a proof-of-concept URL demonstrating the injection point but lacks executable exploit code.
Description
SQL injection vulnerability in memberlist.php in WSN Forum 1.21 allows remote attackers to execute arbitrary SQL commands via the id parameter in a profile action.
Exploits (1)
The provided text describes an SQL injection vulnerability in WSN Forum, where the 'id' parameter in memberlist.php is not properly sanitized. It includes a proof-of-concept URL demonstrating the injection point but lacks executable exploit code.