CVE-2009-0768
YapBB <1.2 - SQL Injection
Title source: llmDescription
SQL injection vulnerability in forumhop.php in YapBB 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the forumID parameter in a next action.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by darkjoker · perlwebappsphp
https://www.exploit-db.com/exploits/7984
Scores
EPSS
0.0036
EPSS Percentile
58.3%
Details
CWE
CWE-89
Status
published
Products (3)
yapbb/yapbb
1.1
yapbb/yapbb
1.2 beta2
yapbb/yapbb
< 1.2
Published
Mar 06, 2009
Tracked Since
Feb 18, 2026