CVE-2006-6280 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in viewthread.php in Oxygen (O2PHP Bulletin Board) 1.1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the pid parameter a different vector than CVE-2006-1572.
Reference
http://acid-root.new.fr/poc/14061118.txt http://securityreason.com/securityalert/1958 http://www.securityfocus.com/archive/1/452009/100/200/threaded http://www.securityfocus.com/bid/21172 https://exchange.xforce.ibmcloud.com/vulnerabilities/30388
Share on: