EIP-2026-110987
PRE-CVEphpBB-Auction Module 1.0/1.2 - 'Auction_Rating.php' SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-110987. PoCs published by sNKenjoi.
AI-analyzed exploit summary The exploit demonstrates an SQL injection vulnerability in the phpbb-auction module by injecting a single quote into the 'u' parameter of auction_rating.php. This lack of input sanitization allows attackers to manipulate SQL queries, potentially leading to data disclosure or modification.
Description
phpBB-Auction Module 1.0/1.2 - 'Auction_Rating.php' SQL Injection
Exploits (1)
The exploit demonstrates an SQL injection vulnerability in the phpbb-auction module by injecting a single quote into the 'u' parameter of auction_rating.php. This lack of input sanitization allows attackers to manipulate SQL queries, potentially leading to data disclosure or modification.