Multiple SQL injection vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) FID parameter in board.php, (2) sortorder, perpage, or id parameters in member.php, (3) forums parameter in search.php, or (4) PID or FID parameters in post.php.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2005-05-10T04:00:00
Updated: 2024-08-08T01:07:49.173Z
Reserved: 2005-05-04T00:00:00
Link: CVE-2004-1966

No data.

Status : Modified
Published: 2004-12-31T05:00:00.000
Modified: 2024-11-20T23:52:10.820
Link: CVE-2004-1966

No data.