CVE-2008-6632 Information

Description

SQL injection vulnerability in func/login.php in MercuryBoard 1.1.5 and earlier allows remote attackers to execute arbitrary SQL commands via the User-Agent HTTP header ($_SERVER[‘HTTP_USER_AGENT’]).

Reference

http://www.securityfocus.com/bid/29280 https://exchange.xforce.ibmcloud.com/vulnerabilities/42519 https://www.exploit-db.com/exploits/5653

Share on: