SQL injection vulnerability in the IP-Search functionality in the IP-Tracking Mod for phpBB 2.0.x allows remote authenticated administrators to execute arbitrary SQL commands via the Search Query field.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/34384 | vdb entry |
http://osvdb.org/37534 | vdb entry |
http://www.securityfocus.com/archive/1/469299/100/0/threaded | mailing list |
http://securityreason.com/securityalert/2731 | third party advisory |