EIP-2026-109750
PRE-CVEMyBulletinBoard (MyBB) 1.03 - Multiple SQL Injections
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109750. PoCs published by HACKERS PAL.
AI-analyzed exploit summary This Perl script exploits a SQL injection vulnerability in MyBB Forum's showteam.php by manipulating the GLOBALS[] parameter to extract user credentials, including usernames, password hashes, and login keys. It automates the extraction process by inferring the table prefix and targeting a specific user ID.
Description
MyBulletinBoard (MyBB) 1.03 - Multiple SQL Injections
Exploits (1)
This Perl script exploits a SQL injection vulnerability in MyBB Forum's showteam.php by manipulating the GLOBALS[] parameter to extract user credentials, including usernames, password hashes, and login keys. It automates the extraction process by inferring the table prefix and targeting a specific user ID.