SQL injection vulnerability in PD9 Software MegaBBS 2 and 2.1 allows remote attackers to execute arbitrary SQL commands via the (1) sortdir or (2) criteria parameter to ladder-log.asp or the (3) memberid or (4) teamid parameter to view-profile.asp.
                
            References
                    Configurations
                    Configuration 1 (hide)
                                
                                
  | 
                        
Information
                Published : 2004-12-30 21:00
Updated : 2017-07-10 18:31
NVD link : CVE-2004-2145
Mitre link : CVE-2004-2145
JSON object : View
CWE
                Products Affected
                pd9_software
- megabbs
 


