PT-2003-2137 · Thwboard · Thwboard
Publicado
2003-11-03
·
Atualizado
2017-07-11
·
CVE-2003-1185
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
ThWboard versions prior to Beta 2.8.2
Description
The issue allows remote attackers to inject arbitrary SQL commands via various vectors, including Admin-Center, Announcements, admin/calendar.php, and showevent.php.
Recommendations
For versions prior to Beta 2.8.2, update to Beta 2.8.2 or later to resolve the issue.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Thwboard