vendor:
CelerBB
by:
Salvatore "drosophila" Fresta
7.5
CVSS
HIGH
Multiple SQL Injection, Information Disclosure and Authentication Bypass
89, 200, 287
CWE
Product Name: CelerBB
Affected Version From: 0.0.2
Affected Version To: 0.0.2
Patch Exists: NO
Related CWE: N/A
CPE: 2.3:a:celerbb:celerbb:0.0.2
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009
CelerBB 0.0.2 Multiple SQL Injection, Information Disclosure and Authentication Bypass
This vulnerability allows a guest to view username and password list, view reserved information of any user and bypass authentication.
Mitigation:
No fix.