7.5
CVSSv2

CVE-2004-1555

Published: 31/12/2004 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in BroadBoard Instant ASP Message Board allow remote malicious users to run arbitrary SQL commands via the (1) keywords parameter to search.asp, (2) handle parameter to profile.asp, (3) txtUserHandle parameter to reg2.asp or (4) txtUserEmail parameter to forgot.asp.

Vulnerable Product Search on Vulmon Subscribe to Product

broadboard instant asp message board

Exploits

source: wwwsecurityfocuscom/bid/11250/info Reportedly BroadBoard Message Board is affected by multiple SQL injection vulnerabilities These issues are due to a failure of the application to properly sanitize user supplied URI input prior to using it in an SQL query An attacker may exploit these issues to manipulate SQL queries, potent ...
source: wwwsecurityfocuscom/bid/11250/info Reportedly BroadBoard Message Board is affected by multiple SQL injection vulnerabilities These issues are due to a failure of the application to properly sanitize user supplied URI input prior to using it in an SQL query An attacker may exploit these issues to manipulate SQL queries, potentia ...