** UNVERIFIABLE ** SQL injection vulnerability in PunkBuster Screenshot Database (PB-DB) Alpha 6 allows remote attackers to execute arbitrary SQL commands via the username and password fields of the login form. NOTE: the original vulnerability report contains several significant inconsistencies that make it unclear whether the report is accurate, including (1) PB-DB is really the "PunkBuster Screenshot Database" and not "PunkBuster" itself; (2) there is no apparent association between PunkBuster and "Punky Brewster"; (3) the claimed source code is not anywhere in Alpha 6.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:53
Type | Values Removed | Values Added |
---|---|---|
References | () http://securitytracker.com/id?1009145 - | |
References | () http://www.osvdb.org/18981 - | |
References | () http://www.securityfocus.com/archive/1/354453 - Exploit, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/9697 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/15267 - |
Information
Published : 2004-12-31 05:00
Updated : 2024-11-20 23:53
NVD link : CVE-2004-2340
Mitre link : CVE-2004-2340
CVE.ORG link : CVE-2004-2340
JSON object : View
Products Affected
even_balance
- punkbuster_database
CWE