EIP-2026-109303
PRE-CVEMambo Open Source 4.0.14 - 'PollBooth.php' Multiple SQL Injections
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109303. PoCs published by frog.
AI-analyzed exploit summary This exploit demonstrates SQL injection in Mambo Open Source via the 'pollBooth.php' script. The attacker manipulates the 'dbprefix' parameter to execute arbitrary SQL queries, allowing unauthorized modifications to the database, such as changing user privileges or passwords.
Description
Mambo Open Source 4.0.14 - 'PollBooth.php' Multiple SQL Injections
Exploits (1)
This exploit demonstrates SQL injection in Mambo Open Source via the 'pollBooth.php' script. The attacker manipulates the 'dbprefix' parameter to execute arbitrary SQL queries, allowing unauthorized modifications to the database, such as changing user privileges or passwords.