EIP-2026-109307
PRE-CVEMambo Site Server 4.0.14 - 'banners.php?bid' SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109307. PoCs published by Lifo Fifo.
AI-analyzed exploit summary The provided text describes SQL injection and email spoofing vulnerabilities in Mambo Open Source Server 4.0.14, specifically in the banners.php, emailfriend/emailarticle.php, and contact.php modules. It includes an example SQL injection payload but lacks executable exploit code.
Description
Mambo Site Server 4.0.14 - 'banners.php?bid' SQL Injection
Exploits (1)
The provided text describes SQL injection and email spoofing vulnerabilities in Mambo Open Source Server 4.0.14, specifically in the banners.php, emailfriend/emailarticle.php, and contact.php modules. It includes an example SQL injection payload but lacks executable exploit code.