SQL injection vulnerability in admin_hacks_list.php in the Nivisec Hacks List 1.21 and earlier phpBB module allows remote attackers to execute arbitrary SQL commands via the hack_id parameter.
Link | Tags |
---|---|
https://www.exploit-db.com/exploits/2851 | exploit |
http://www.securityfocus.com/bid/21290 | vdb entry exploit |
https://exchange.xforce.ibmcloud.com/vulnerabilities/30533 | vdb entry |