CRLF injection vulnerability in YaBB 1 Gold before 1.3.2 allows remote attackers to modify text file contents via the subject variable.
References
Link | Resource |
---|---|
http://www.yabbforum.com/community/YaBB.pl?board=general;action=display;num=1093133233 | Patch |
http://secunia.com/advisories/12609/ | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2004-12-30 21:00
Updated : 2008-09-10 12:33
NVD link : CVE-2004-2140
Mitre link : CVE-2004-2140
JSON object : View
CWE
Products Affected
yabb
- yabb