Id · Id Board · CVE-2005-2197
Name of the Vulnerable Software and Affected Versions:
Id Board version 1.1.3
Description:
The issue allows remote attackers to modify SQL queries. This can be achieved by exploiting the `f` parameter in the "index.php" endpoint.
Recommendations:
For Id Board version 1.1.3, consider restricting access to the `sql.cls.php` file until a patch is available. As a temporary workaround, avoid using the `f` parameter in the "index.php" endpoint to minimize the risk of exploitation.