Exploitation Summary
EIP tracks 3 public exploits for CVE-2007-2339. PoCs published by Janek Vind.
AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in Phorum 5.1.20 due to improper sanitization of array input in the `phorum_db_user_get` function. The PoC uses a crafted HTML form to inject malicious SQL via the `recipients` parameter.
Description
Multiple SQL injection vulnerabilities in Phorum before 5.1.22 allow remote attackers to execute arbitrary SQL commands via (1) a modified recipients parameter name in (a) pm.php; (2) the curr parameter to the (b) badwords (aka censorlist) or (c) banlist module in admin.php; or (3) the "Edit groups / Add group" field in the (d) groups module in admin.php.
Exploits (3)
This exploit demonstrates a SQL injection vulnerability in Phorum 5.1.20 due to improper sanitization of array input in the `phorum_db_user_get` function. The PoC uses a crafted HTML form to inject malicious SQL via the `recipients` parameter.
This is a writeup describing a SQL injection vulnerability in Phorum 5.1.20. It demonstrates how an attacker can exploit insufficient input sanitization to inject malicious SQL queries, specifically by creating a group with a name containing a single quote.
This exploit demonstrates a SQL injection vulnerability in Phorum's banlist deletion functionality due to insufficient input sanitization. The PoC triggers a SQL syntax error by injecting 'OR' into the 'delete' parameter, confirming the vulnerability.