CVE-2007-2556
Nuked-klaN <1.7.6 - SQL Injection
Title source: llmDescription
SQL injection vulnerability in Nuked-klaN 1.7.6 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For (X_FORWARDED_FOR) HTTP header, as demonstrated by a request to the /nk/ URI.
Exploits (2)
exploitdb
WORKING POC
VERIFIED
by Charles Fol · phpwebappsphp
https://www.exploit-db.com/exploits/6749
References (8)
Scores
EPSS
0.0536
EPSS Percentile
89.9%
Classification
Status
draft
Affected Products (1)
nuked-klan/nuked-klan
Timeline
Published
May 09, 2007
Tracked Since
Feb 18, 2026