PM.php in Elite Bulletin Board before 1.0.10 allows remote authenticated users to delete arbitrary PM messages and conduct other attacks via modified id fields.
References
Configurations
History
21 Nov 2024, 00:33
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/37820 - | |
References | () http://secunia.com/advisories/25926 - Vendor Advisory | |
References | () http://sourceforge.net/project/shownotes.php?release_id=520558&group_id=175118 - Patch | |
References | () http://www.securityfocus.com/bid/24763 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/35262 - |
Information
Published : 2007-07-06 18:30
Updated : 2024-11-21 00:33
NVD link : CVE-2007-3592
Mitre link : CVE-2007-3592
CVE.ORG link : CVE-2007-3592
JSON object : View
Products Affected
elite_bulletin_board
- elite_bulletin_board
CWE