SQL injection vulnerability in viewtopic.php for phpBB 2.0.5 and earlier allows remote attackers to steal password hashes via the topic_id parameter.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/7979 | exploit vdb entry patch vendor advisory |
http://www.phpbb.com/phpBB/viewtopic.php?t=112052 | patch vendor advisory |
http://marc.info/?l=bugtraq&m=105607263130644&w=2 | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/12366 | vdb entry |