Multiple SQL injection vulnerabilities in DeluxeBB 1.06 allow remote attackers to execute arbitrary SQL commands via the (1) hideemail, (2) languagex, (3) xthetimeoffset, and (4) xthetimeformat parameters during account registration.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Deluxebb | Deluxebb | 1.06 (including) | 1.06 (including) |