vendor:
MyBulletinBoard
by:
0x86
7.5
CVSS
HIGH
Remote SQL Injection
89
CWE
Product Name: MyBulletinBoard
Affected Version From: 1
Affected Version To: 1.2.2005
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
MyBulletinBoard <= 1.2.5 Remote SQL Injection Exploit
This is a remote SQL injection exploit for MyBulletinBoard version 1.2.5. The exploit allows an attacker to execute arbitrary SQL queries on the target system.
Mitigation:
Upgrade to a patched version of MyBulletinBoard.