EIP-2026-110878
PRE-CVEPHP-Nuke Advertising Module 0.9 - 'modules.php' SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-110878. PoCs published by 0x90.
AI-analyzed exploit summary This Perl script exploits a blind SQL injection vulnerability in the PHP-Nuke Advertising Module by brute-forcing the admin password character-by-character using time-based techniques. It leverages the `benchmark` function to infer password characters based on response delays.
Description
PHP-Nuke Advertising Module 0.9 - 'modules.php' SQL Injection
Exploits (1)
This Perl script exploits a blind SQL injection vulnerability in the PHP-Nuke Advertising Module by brute-forcing the admin password character-by-character using time-based techniques. It leverages the `benchmark` function to infer password characters based on response delays.