vendor:
MegaBBS
by:
Unknown
N/A
CVSS
N/A
HTTP response splitting and SQL injection
CWE
Product Name: MegaBBS
Affected Version From: 2
Affected Version To: 2.1
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Unknown
Multiple vulnerabilities in MegaBBS
MegaBBS is reported prone to multiple vulnerabilities. These issues exist due to insufficient sanitization of user-supplied data and may allow an attacker to carry out HTTP response splitting and SQL injection attacks.
Mitigation:
No known mitigation or remediation is available for these vulnerabilities.