Vulnerabilities > CVE-2006-2569 - SQL Injection vulnerability in Woltlab Burning Board Links.PHP

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
4r-linklist
woltlab
exploit available

Summary

SQL injection vulnerability in links.php in 4R Linklist 1.0 RC2 and earlier, a module for Woltlab Burning Board, allows remote attackers to execute arbitrary SQL commands via the cat parameter.

Exploit-Db

descriptionWoltlab Burning Board <= 2.3.5 (links.php) SQL Injection Exploit. CVE-2006-2569. Webapps exploit for php platform
fileexploits/php/webapps/1810.pl
idEDB-ID:1810
last seen2016-01-31
modified2006-05-20
platformphp
port
published2006-05-20
reporter666
sourcehttps://www.exploit-db.com/download/1810/
titleWoltlab Burning Board <= 2.3.5 links.php SQL Injection Exploit
typewebapps