EIP-2026-109777
PRE-CVEMyPHP Forum 3.0 - 'search.php' Multiple SQL Injections
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109777. PoCs published by The:Paradox.
AI-analyzed exploit summary This is a functional SQL injection exploit for MyPHP Forum 3.0, leveraging unsanitized user input in the search functionality to extract user credentials from the database. The payload uses a UNION-based SQLi to concatenate and display usernames and passwords from the member table.
Description
MyPHP Forum 3.0 - 'search.php' Multiple SQL Injections
Exploits (1)
This is a functional SQL injection exploit for MyPHP Forum 3.0, leveraging unsanitized user input in the search functionality to extract user credentials from the database. The payload uses a UNION-based SQLi to concatenate and display usernames and passwords from the member table.