5.1
CVSSv2

CVE-2006-2915

Published: 23/06/2006 Updated: 18/10/2018
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 454
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in DeluxeBB 1.06 allow remote malicious users to execute arbitrary SQL commands via the (1) hideemail, (2) languagex, (3) xthetimeoffset, and (4) xthetimeformat parameters during account registration.

Vulnerable Product Search on Vulmon Subscribe to Product

deluxebb deluxebb 1.06

Exploits

Secunia Research has discovered some vulnerabilities in DeluxeBB version 106, which can be exploited by malicious people to conduct SQL injection attacks and compromise a vulnerable system ...