Multiple SQL injection vulnerabilities in SonicBB 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) part and (2) by parameters to (a) search.php, or the (2) id parameter to (b) viewforum.php.
References
Configurations
History
21 Nov 2024, 00:29
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=full-disclosure&m=117914598917534&w=2 - | |
References | () http://secunia.com/advisories/25279 - | |
References | () http://www.netvigilance.com/advisory0019 - Exploit, Vendor Advisory | |
References | () http://www.osvdb.org/33907 - | |
References | () http://www.securityfocus.com/archive/1/468536/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/23964 - | |
References | () http://www.vupen.com/english/advisories/2007/1816 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/34258 - |
Information
Published : 2007-05-14 21:19
Updated : 2024-11-21 00:29
NVD link : CVE-2007-1902
Mitre link : CVE-2007-1902
CVE.ORG link : CVE-2007-1902
JSON object : View
Products Affected
sonicbb
- sonicbb
CWE