CVE-2007-6083
IceBB 1.0-rc6 - SQL Injection via X-Forwarded-For HTTP Header
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-6083. PoCs published by Gu1ll4um3r0m41n.
AI-analyzed exploit summary This exploit leverages SQL injection via the X-Forwarded-For header in IceBB 1.0-rc6 to bypass authentication and extract the database configuration file. It manipulates session data and creates a fake skin to retrieve sensitive information.
Description
SQL injection vulnerability in admin/index.php in IceBB 1.0-rc6 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header.
Exploits (1)
This exploit leverages SQL injection via the X-Forwarded-For header in IceBB 1.0-rc6 to bypass authentication and extract the database configuration file. It manipulates session data and creates a fake skin to retrieve sensitive information.