CVE-2004-0036 Information

Description

SQL injection vulnerability in calendar.php for vBulletin Forum 2.3.x before 2.3.4 allows remote attackers to steal sensitive information via the eventid parameter.

Reference

http://marc.info/?l=bugtraq&m=107340358202123&w=2 http://www.osvdb.org/3344 http://www.securityfocus.com/bid/9360 http://www.vbulletin.com/forum/showthread.php?postid=588825 https://exchange.xforce.ibmcloud.com/vulnerabilities/14144

Share on: