CVE-2016-20072

HIGH

BBS e-Franchise 1.1.1 WordPress Plugin SQL Injection via uid

Title source: cna
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2016-20072. PoCs published by Lenon Leite.

AI-analyzed exploit summary The exploit demonstrates a SQL injection vulnerability in the BBS e-Franchise WordPress plugin (version 1.1.1) via the 'uid' GET parameter. The PoC provides a crafted URL that extracts data from the 'wp_terms' table, confirming the vulnerability.

Description

BBS e-Franchise 1.1.1 plugin for WordPress contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the uid parameter. Attackers can craft requests to pages using the plugin's shortcode with UNION-based SQL injection in the uid parameter to extract sensitive data from the WordPress database including user information and taxonomy terms.

Exploits (1)

exploitdb WORKING POC
by Lenon Leite · textwebappsphp
https://www.exploit-db.com/exploits/40782

The exploit demonstrates a SQL injection vulnerability in the BBS e-Franchise WordPress plugin (version 1.1.1) via the 'uid' GET parameter. The PoC provides a crafted URL that extracts data from the 'wp_terms' table, confirming the vulnerability.

Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: BBS e-Franchise WordPress Plugin 1.1.1
No auth needed
Prerequisites: WordPress site with the vulnerable plugin installed · A post/page using the plugin's shortcode
devstral-2 · analyzed Jun 15, 2026 Full analysis →

References (4)

Core 4
Core References
Exploit exploit
ExploitDB-40782
https://www.exploit-db.com/exploits/40782
Product product
Official Product Homepage
https://wordpress.org/plugins/bbs-e-franchise/
Product product
Official Product Homepage
http://lenonleite.com.br/
Third Party Advisory third-party-advisory
VulnCheck Advisory: BBS e-Franchise 1.1.1 WordPress Plugin SQL Injection via uid
https://www.vulncheck.com/advisories/bbs-e-franchise-wordpress-plugin-sql-injection-via-uid

Scores

CVSS v3 8.2
EPSS 0.0027
EPSS Percentile 18.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-89
Status published
Products (1)
bbsetheme/BBS e-Franchise 1.1.1
Published Jun 15, 2026
Tracked Since Jun 15, 2026