Multiple SQL injection vulnerabilities in VUBB alpha rc1 allow remote attackers to execute arbitrary SQL commands via the (1) f parameter to viewforum.php, (2) t parameter to viewtopic.php, and (3) view parameter to usercp.php.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/24350 | vdb entry |
http://www.osvdb.org/21331 | vdb entry exploit |
http://pridels0.blogspot.com/2005/11/vubb-forum-sql-and-xss-vuln.html | |
http://www.osvdb.org/21329 | vdb entry exploit |
http://www.osvdb.org/21330 | vdb entry exploit |