SQL injection vulnerability in tnews.php in BBsProcesS BBPortalS 1.5.10 up to and including 2.0 allows remote malicious users to execute arbitrary SQL commands via the id parameter in a tnews action.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
bbsprocess bbportals 2.0 |
||
bbsprocess bbportals 1.5.10 |
||
bbsprocess bbportals 1.5.11 |
||
bbsprocess bbportals 1.6.2 |