HIGH
Multiple SQL injection vulnerabilities in PD9 Software MegaBBS 2.2 allow remote attackers to execute arbitrary SQL commands via the (1) invisible and (2) timeoffset parameters to profile/controlpanel.asp and the (3) attachmentid parameter to forums/attach-file.asp
Published Apr 30, 2008
7.5
HIGHCVSS 2.0
EPSS 1.00%
Description
Affected products
Remediation
Metrics
References (5)
Change history (0)
No recorded changes yet.