EIP-2026-110952
PRE-CVEphpBB 2.0.17 - 'signature_bbcode_uid' Remot Command
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-110952. PoCs published by RusH.
AI-analyzed exploit summary This exploit targets a remote command execution vulnerability in phpBB <= 2.0.17 by leveraging PHP 5 < 5.0.5 with register_globals=On and magic_quotes off. It registers a user, injects a malicious signature containing a command, and executes it via a crafted profile edit request.
Description
phpBB 2.0.17 - 'signature_bbcode_uid' Remot Command
Exploits (1)
This exploit targets a remote command execution vulnerability in phpBB <= 2.0.17 by leveraging PHP 5 < 5.0.5 with register_globals=On and magic_quotes off. It registers a user, injects a malicious signature containing a command, and executes it via a crafted profile edit request.