CVE-2007-1171

NukeSentinel <2.5.12 - SQL Injection

Title source: llm

Description

SQL injection vulnerability in includes/nsbypass.php in NukeSentinel 2.5.05, 2.5.11, and other versions before 2.5.12 allows remote attackers to execute arbitrary SQL commands via an admin cookie.

Exploits (1)

exploitdb WORKING POC VERIFIED
by DarkFig · phpwebappsphp
https://www.exploit-db.com/exploits/3337

Scores

EPSS 0.0091
EPSS Percentile 75.5%

Classification

CWE
CWE-89
Status draft

Affected Products (1)

nukescripts/nukesentinel < 2.5.11

Timeline

Published Mar 02, 2007
Tracked Since Feb 18, 2026