CVE Vulnerabilities

CVE-2005-2989

Published: Sep 20, 2005 | Modified: Mar 08, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Multiple SQL injection vulnerabilities in DeluxeBB 1.0 and 1.0.5 allow remote attackers to execute arbitrary SQL commands via the (1) tid parameter to topic.php, the uid parameter to (2) misc.php or (3) pm.php, or the fid parameter to (3) forums.php or (4) newpost.php.

Affected Software

Name Vendor Start Version End Version
Deluxebb Deluxebb 1.0 (including) 1.0 (including)
Deluxebb Deluxebb 1.05 (including) 1.05 (including)

References