EIP-2026-113464
PRE-CVEWoltlab Burning Board FLVideo Addon - 'video.php?value' SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-113464. PoCs published by Easy Laster.
AI-analyzed exploit summary This Ruby script exploits a SQL injection vulnerability in the Woltlab Burning Board FLVideo Addon via the 'flvideo.php' script. It extracts sensitive user data (version, username, password hash, email) by manipulating the 'value' parameter in a UNION-based SQLi attack.
Description
Woltlab Burning Board FLVideo Addon - 'video.php?value' SQL Injection
Exploits (1)
This Ruby script exploits a SQL injection vulnerability in the Woltlab Burning Board FLVideo Addon via the 'flvideo.php' script. It extracts sensitive user data (version, username, password hash, email) by manipulating the 'value' parameter in a UNION-based SQLi attack.