CVE-2023-51810

HIGH

StackIdeas EasyDiscuss <5.0.10 - SQL Injection

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2023-51810. PoCs published by Pastea.

AI-analyzed exploit summary The repository provides a detailed writeup and proof-of-concept for CVE-2023-51810, a blind SQL injection vulnerability in StackIdeas EasyDiscuss v5.0.5. It includes example payloads and steps to reproduce the vulnerability.

Description

SQL injection vulnerability in StackIdeas EasyDiscuss v.5.0.5 and fixed in v.5.0.10 allows a remote attacker to obtain sensitive information via a crafted request to the search parameter in the Users module.

Exploits (1)

nomisec WRITEUP
by Pastea · poc
https://github.com/Pastea/CVE-2023-51810

The repository provides a detailed writeup and proof-of-concept for CVE-2023-51810, a blind SQL injection vulnerability in StackIdeas EasyDiscuss v5.0.5. It includes example payloads and steps to reproduce the vulnerability.

Classification
Writeup 100%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: StackIdeas EasyDiscuss v5.0.5
No auth needed
Prerequisites: Access to the vulnerable EasyDiscuss component on a Joomla installation
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit, Third Party Advisory
https://github.com/Pastea/CVE-2023-51810

Scores

CVSS v3 7.5
EPSS 0.0131
EPSS Percentile 67.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-89
Status published
Products (1)
stackideas/easydiscuss 5.0.5 - 5.0.10
Published Jan 16, 2024
Tracked Since Feb 18, 2026