CVE-2007-4653

SQL injection vulnerability in links.php in the Links MOD 1.2.2 and earlier for phpBB 2.0.22 and earlier allows remote attackers to execute arbitrary SQL commands via the start parameter in a search action.
Configurations

Configuration 1 (hide)

cpe:2.3:a:phpbb:phpbb:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:36

Type Values Removed Values Added
References () http://osvdb.org/38427 - () http://osvdb.org/38427 -
References () http://www.securityfocus.com/bid/25501 - () http://www.securityfocus.com/bid/25501 -
References () https://www.exploit-db.com/exploits/4346 - () https://www.exploit-db.com/exploits/4346 -

Information

Published : 2007-09-04 22:17

Updated : 2024-11-21 00:36


NVD link : CVE-2007-4653

Mitre link : CVE-2007-4653

CVE.ORG link : CVE-2007-4653


JSON object : View

Products Affected

phpbb

  • phpbb
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')