CVE-2008-3556 Information
Feb 14, 2021
cve
Description
Multiple SQL injection vulnerabilities in index.php in Battle.net Clan Script 1.5.2 allow remote attackers to execute arbitrary SQL commands via the (1) showmember parameter in a members action and the (2) thread parameter in a board action. NOTE: vector 1 might be the same as CVE-2008-2522.
Reference
http://securityreason.com/securityalert/4119 http://www.securityfocus.com/archive/1/495167/100/0/threaded http://www.securityfocus.com/bid/30565 https://exchange.xforce.ibmcloud.com/vulnerabilities/44262
Share on: