EIP-2026-109309
PRE-CVEMambo Site Server 4.0.14 - 'emailarticle.php?id' SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109309. PoCs published by Lifo Fifo.
AI-analyzed exploit summary The provided text describes SQL injection and email spoofing vulnerabilities in Mambo Open Source Server, specifically in the banners.php, emailfriend/emailarticle.php, and contact.php modules. It includes an example SQL injection payload for the emailarticle.php endpoint.
Description
Mambo Site Server 4.0.14 - 'emailarticle.php?id' SQL Injection
Exploits (1)
The provided text describes SQL injection and email spoofing vulnerabilities in Mambo Open Source Server, specifically in the banners.php, emailfriend/emailarticle.php, and contact.php modules. It includes an example SQL injection payload for the emailarticle.php endpoint.