CVE Vulnerabilities

CVE-2006-6237

Published: Dec 03, 2006 | Modified: Oct 17, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in the decode_cookie function in thread.php in Woltlab Burning Board Lite 1.0.2 allows remote attackers to execute arbitrary SQL commands via the threadvisit Cookie parameter.

Affected Software

Name Vendor Start Version End Version
Burning_board_lite Woltlab 1.0.2 (including) 1.0.2 (including)

References