EIP-2026-112254
PRE-CVESMF 2.0.1 - SQL Injection / Privilege Escalation
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-112254. PoCs published by The:Paradox.
AI-analyzed exploit summary This is a detailed technical analysis of a SQL injection vulnerability in SMF (Simple Machines Forum) versions up to 2.0.1, leveraging a PHP Zend_Hash_Del_Key_Or_Index vulnerability in older PHP versions. The writeup explains the root cause, patch bypass techniques, and proof-of-concept steps.
Description
SMF 2.0.1 - SQL Injection / Privilege Escalation
Exploits (1)
This is a detailed technical analysis of a SQL injection vulnerability in SMF (Simple Machines Forum) versions up to 2.0.1, leveraging a PHP Zend_Hash_Del_Key_Or_Index vulnerability in older PHP versions. The writeup explains the root cause, patch bypass techniques, and proof-of-concept steps.