CVE-2007-3589 Information

Description

Multiple SQL injection vulnerabilities in b1gbb 2.24.0 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) showthread.php or (2) showboard.php.

Reference

http://osvdb.org/38950 http://osvdb.org/38951 http://www.securityfocus.com/bid/24696 https://exchange.xforce.ibmcloud.com/vulnerabilities/35129 https://www.exploit-db.com/exploits/4122

Share on: