CVE-2007-2556

Nuked-klaN <1.7.6 - SQL Injection

Title source: llm

Description

SQL injection vulnerability in Nuked-klaN 1.7.6 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For (X_FORWARDED_FOR) HTTP header, as demonstrated by a request to the /nk/ URI.

Exploits (2)

exploitdb WORKING POC VERIFIED
by DarkFig · phpwebappsphp
https://www.exploit-db.com/exploits/3858
exploitdb WORKING POC VERIFIED
by Charles Fol · phpwebappsphp
https://www.exploit-db.com/exploits/6749

Scores

EPSS 0.0536
EPSS Percentile 89.9%

Classification

Status draft

Affected Products (1)

nuked-klan/nuked-klan

Timeline

Published May 09, 2007
Tracked Since Feb 18, 2026