Executive brief
A vulnerability exists in Simple IT Discussion Forum, a web application used for hosting online community discussions. An attacker can exploit this flaw to gain unauthorized access to the underlying database, potentially leading to the theft of sensitive user information or the modification of forum content. This issue can be exploited remotely without requiring any user login or special permissions.
Technical details
A SQL injection vulnerability exists in code-projects Simple IT Discussion Forum 1.0 within the '/functions/addcomment.php' component. The root cause is the improper neutralization of the 'postid' POST parameter before its use in a database query. A remote, unauthenticated attacker can exploit this by sending specially crafted HTTP requests containing boolean-based or time-based blind SQL payloads. Successful exploitation allows for unauthorized database enumeration, data extraction, and potential tampering with forum records. A public Proof-of-Concept (PoC) using sqlmap has been disclosed.
Affected products
- code-projects Simple IT Discussion Forum 1.0
Timeline
- 2026-03-25: disclosed: Vulnerability details and PoC shared on GitHub issue tracker
- 2026-04-09: advisory: CVE published and listed in NVD