Multiple SQL injection vulnerabilities in BK Forum 4.0 allow remote malicious users to execute arbitrary SQL commands via the (1) id parameter to member.asp, (2) forum parameter to forum.asp, or (3) various parameters in register.asp.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
bk dev bk forum |