CVE-2006-5508

Woltlab Burning Book - SQL Injection

Title source: rule

Description

Multiple SQL injection vulnerabilities in addentry.php in WoltLab Burning Book 1.1.2 allow remote attackers to execute arbitrary SQL commands via (1) the n parameter and (2) the User-Agent HTTP header.

Exploits (1)

exploitdb WORKING POC
perlwebappsphp
https://www.exploit-db.com/exploits/2579

Scores

EPSS 0.0056
EPSS Percentile 68.4%

Details

Status published
Products (1)
woltlab/burning_book 1.1.2
Published Oct 25, 2006
Tracked Since Feb 18, 2026