SQL injection vulnerability in DeluxeBB 1.07 and previous versions allows remote malicious users to bypass authentication, spoof users, and modify settings via the (1) memberpw and (2) membercookie cookies.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
deluxebb deluxebb 1.07 |
||
deluxebb deluxebb 1.05 |
||
deluxebb deluxebb 1.06 |