6.5
CVSSv2

CVE-2015-1434

Published: 16/02/2015 Updated: 13/03/2019
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in my little forum prior to 2.3.4 allow remote administrators to execute arbitrary SQL commands via the (1) letter parameter in a user action or (2) edit_category parameter to index.php.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mylittleforum my little forum

Exploits

My Little Forum version 233 suffers from cross site scripting and remote SQL injection vulnerabilities ...