19682vdb entry
http://www.securityfocus.com/bid/19682 CVE-2006-4367
phpBB All Topics Mod 1.5.0 - 'start' SQL Injection
Record summary
CVE-2006-4367 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
SQL injection vulnerability in alltopics.php in the All Topics Hack 1.5.0 and earlier for phpBB 2.0.21 allows remote attackers to execute arbitrary SQL commands via the start parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBphpBB All Topics Mod 1.5.0 - 'start' SQL InjectionExploitDB exploitby SpiderZNot analyzed1 file
References
4phpbb-alltopics-sql-injection(28538)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/28538 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2006-4367 2248exploit
https://www.exploit-db.com/exploits/2248