19132Third-party advisory
http://secunia.com/advisories/19132 CVE-2006-1153
D2-Shoutbox 4.2 IPB Mod - 'load' SQL Injection
Record summary
CVE-2006-1153 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
SQL injection vulnerability in D2-Shoutbox 4.2 allows remote attackers to execute arbitrary SQL commands via the load parameter, when performing a Shoutbox action through Invision Power Board (IPB).
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBD2-Shoutbox 4.2 IPB Mod - 'load' SQL InjectionExploitDB exploitby SkOdNot analyzed1 file
References
616984vdb entry
http://www.securityfocus.com/bid/16984 ADV-2006-0865vdb entry
http://www.vupen.com/english/advisories/2006/0865 d2shoutbox-index-sql-injection(25074)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/25074 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2006-1153 1556exploit
https://www.exploit-db.com/exploits/1556