PT-2006-3301 · Mybulletinboard · Mybb

Breeeeh

·

Publicado

2006-05-12

·

Atualizado

2018-10-18

·

CVE-2006-2336

CVSS v2.0

6.4

Média

VetorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions MyBB (aka MyBulletinBoard) version 1.1.1
Description The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the comma parameter in the showthread.php file.
Recommendations For MyBB (aka MyBulletinBoard) version 1.1.1, update to a newer version that contains a fix for this issue to prevent the execution of arbitrary SQL commands.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-2336

Produtos afetados

Mybb