Description
SQL injection vulnerability in inc/start.php in FlexBB 0.5.5 and earlier allows remote attackers to execute arbitrary SQL commands via the flexbb_username COOKIE parameter.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Devil-00 · perlwebappsphp
https://www.exploit-db.com/exploits/1686
References (4)
Scores
EPSS
0.0094
EPSS Percentile
76.3%
Details
CWE
CWE-89
Status
published
Products (1)
flexbb/flexbb
< 0.5.5
Published
Apr 21, 2006
Tracked Since
Feb 18, 2026