7.5
CVSSv2

CVE-2006-3797

Published: 24/07/2006 Updated: 17/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in DeluxeBB 1.07 and previous versions allows remote malicious users to bypass authentication, spoof users, and modify settings via the (1) memberpw and (2) membercookie cookies.

Vulnerable Product Search on Vulmon Subscribe to Product

deluxebb deluxebb 1.07

deluxebb deluxebb 1.05

deluxebb deluxebb 1.06