7.5
CVSSv2

CVE-2005-3326

Published: 27/10/2005 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in usercp.php in MyBulletinBoard (MyBB) allows remote malicious users to execute arbitrary SQL commands via the awayday parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

mybulletinboard mybulletinboard 1.0_pr2

mybulletinboard mybulletinboard rc4

Exploits

source: wwwsecurityfocuscom/bid/15204/info MyBulletinBoard is prone to an SQL injection vulnerability This vulnerability could permit remote attackers to pass malicious input to database queries, resulting in modification of query logic or other attacks Successful exploitation could result in a compromise of the application, disclosur ...