CVE-2006-1978

Flexbb < 0.5.5 - SQL Injection

Title source: rule
STIX 2.1

Description

SQL injection vulnerability in inc/start.php in FlexBB 0.5.5 and earlier allows remote attackers to execute arbitrary SQL commands via the flexbb_username COOKIE parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Devil-00 · perlwebappsphp
https://www.exploit-db.com/exploits/1686

Scores

EPSS 0.0094
EPSS Percentile 76.3%

Details

CWE
CWE-89
Status published
Products (1)
flexbb/flexbb < 0.5.5
Published Apr 21, 2006
Tracked Since Feb 18, 2026