CVE Vulnerabilities

CVE-2007-2858

Published: May 24, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in the IP-Search functionality in the IP-Tracking Mod for phpBB 2.0.x allows remote authenticated administrators to execute arbitrary SQL commands via the Search Query field.

Affected Software

Name Vendor Start Version End Version
Ip-tracking Phpbb 2.0 (including) 2.0 (including)
Ip-tracking Phpbb 2.0.1 (including) 2.0.1 (including)
Ip-tracking Phpbb 2.0.2 (including) 2.0.2 (including)
Ip-tracking Phpbb 2.0.3 (including) 2.0.3 (including)
Ip-tracking Phpbb 2.0.4 (including) 2.0.4 (including)
Ip-tracking Phpbb 2.0.5 (including) 2.0.5 (including)
Ip-tracking Phpbb 2.0.6 (including) 2.0.6 (including)
Ip-tracking Phpbb 2.0.7 (including) 2.0.7 (including)
Ip-tracking Phpbb 2.0.8 (including) 2.0.8 (including)
Ip-tracking Phpbb 2.0.9 (including) 2.0.9 (including)

References