CVE-2005-2989

Multiple SQL injection vulnerabilities in DeluxeBB 1.0 and 1.0.5 allow remote attackers to execute arbitrary SQL commands via the (1) tid parameter to topic.php, the uid parameter to (2) misc.php or (3) pm.php, or the fid parameter to (3) forums.php or (4) newpost.php.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:deluxebb:deluxebb:1.0:*:*:*:*:*:*:*
cpe:2.3:a:deluxebb:deluxebb:1.05:*:*:*:*:*:*:*

History

21 Nov 2024, 00:00

Type Values Removed Values Added
References () http://secunia.com/advisories/16819 - Exploit, Patch, Vendor Advisory () http://secunia.com/advisories/16819 - Exploit, Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/14851 - Exploit () http://www.securityfocus.com/bid/14851 - Exploit
References () http://www.vupen.com/english/advisories/2005/1752 - () http://www.vupen.com/english/advisories/2005/1752 -

Information

Published : 2005-09-20 00:03

Updated : 2024-11-21 00:00


NVD link : CVE-2005-2989

Mitre link : CVE-2005-2989

CVE.ORG link : CVE-2005-2989


JSON object : View

Products Affected

deluxebb

  • deluxebb