Описание
Multiple SQL injection vulnerabilities in MyBB (aka MyBulletinBoard) 1.1.1 allow remote attackers to execute arbitrary SQL commands via the e-mail address when registering for a forum that requires e-mail verification, which is not properly handled in (1) usercp.php and (2) member.php.
Multiple SQL injection vulnerabilities in MyBB (aka MyBulletinBoard) 1.1.1 allow remote attackers to execute arbitrary SQL commands via the e-mail address when registering for a forum that requires e-mail verification, which is not properly handled in (1) usercp.php and (2) member.php.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2006-2333
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26545
- http://myimei.com/security/2006-05-07/mybb111email-verification-in-user-activation-sql-injection-attack.html
- http://securityreason.com/securityalert/885
- http://www.securityfocus.com/archive/1/433231/100/0/threaded
EPSS
CVE ID
Связанные уязвимости
Multiple SQL injection vulnerabilities in MyBB (aka MyBulletinBoard) 1.1.1 allow remote attackers to execute arbitrary SQL commands via the e-mail address when registering for a forum that requires e-mail verification, which is not properly handled in (1) usercp.php and (2) member.php.
EPSS