Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-0851. PoCs published by Salvatore Fresta.
AI-analyzed exploit summary The exploit demonstrates multiple vulnerabilities in CelerBB 0.0.2, including SQL injection, information disclosure, and authentication bypass. It provides functional proof-of-concept code for each vulnerability, with specific payloads and attack vectors.
Description
Multiple SQL injection vulnerabilities in CelerBB 0.0.2, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) viewforum.php and (2) viewtopic.php.
Exploits (1)
The exploit demonstrates multiple vulnerabilities in CelerBB 0.0.2, including SQL injection, information disclosure, and authentication bypass. It provides functional proof-of-concept code for each vulnerability, with specific payloads and attack vectors.