CVE-2007-6518
WoltLab Burning Board (wBB) Lite 1.0.2 pl3e - SQL Injection
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-6518.
AI-analyzed exploit summary This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Olbookmarks <= 0.7.4. The vulnerability allows an attacker to include arbitrary remote files via the 'root' parameter in multiple theme-related PHP scripts, potentially leading to remote code execution.
Description
Multiple SQL injection vulnerabilities in search.php in WoltLab Burning Board (wBB) Lite 1.0.2 pl3e allow remote attackers to execute arbitrary SQL commands via the (1) showposts, (2) sortby, and (3) sortorder parameters.
Exploits (1)
This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Olbookmarks <= 0.7.4. The vulnerability allows an attacker to include arbitrary remote files via the 'root' parameter in multiple theme-related PHP scripts, potentially leading to remote code execution.