SQL injection vulnerability in post.php for YaBB SE 1.5.4 and 1.5.5 allows remote attackers to obtain hashed passwords via the quote parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Yabb | Yabb | 1.5.4 (including) | 1.5.4 (including) |
| Yabb | Yabb | 1.5.5 (including) | 1.5.5 (including) |