17992exploit
http://www.exploit-db.com/exploits/17992 CVE-2011-4066
GNUBoard 4.33.02 - 'tp.php?PATH_INFO' SQL Injection
Record summary
CVE-2011-4066 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
SQL injection vulnerability in bbs/tb.php in Gnuboard 4.33.02 and earlier allows remote attackers to execute arbitrary SQL commands via the PATH_INFO.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBGNUBoard 4.33.02 - 'tp.php?PATH_INFO' SQL InjectionExploitDB exploitby flyh4tNot analyzed1 file
References
550173vdb entry
http://www.securityfocus.com/bid/50173 1026197vdb entry
http://www.securitytracker.com/id?1026197 gnuboard-board-sql-injection(70686)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/70686 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2011-4066