PT-2022-9781 · Maxboard · Maxboard

Published

2022-06-01

·

Updated

2022-06-09

·

CVE-2021-26633

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MaxBoard (affected versions not specified)
Description The issue concerns SQL injection and Local File Inclusion (LFI) vulnerabilities. These can lead to information leakage and privilege escalation by manipulating a variable, such as desired value, and inserting an arbitrary file.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-26633

Affected Products

Maxboard