SQL injection vulnerability in DeluxeBB 1.07 and earlier allows remote attackers to bypass authentication, spoof users, and modify settings via the (1) memberpw and (2) membercookie cookies.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-07-24 05:19
Updated : 2018-10-17 14:30
NVD link : CVE-2006-3797
Mitre link : CVE-2006-3797
JSON object : View
CWE
Products Affected
deluxebb
- deluxebb