vendor:
Burning Board
by:
666
N/A
CVSS
N/A
Unknown
Unknown
CWE
Product Name: Burning Board
Affected Version From: Unknown
Affected Version To: 2.3.2006
Patch Exists: NO
Related CWE: Unknown
CPE: Unknown
Platforms Tested:
Unknown
Woltlab Burning Board 2.3.6 <= / Lite Exploit
This script exploits a vulnerability in Woltlab Burning Board 2.3.6 and earlier versions. It allows an attacker to retrieve the username and password hashes of a specific user by injecting SQL code into the search functionality.
Mitigation:
Unknown