vendor:
PBBoard
by:
indoushka
9,3
CVSS
HIGH
Multiple Vulnerabilities
264, 434, 22
CWE
Product Name: PBBoard
Affected Version From: 2.0.5
Affected Version To: 2.0.5
Patch Exists: YES
Related CWE: N/A
CPE: a:pbboard:pbboard:2.0.5
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows, Linux
2009
PBBoard Version 2.0.5 Mullti Vulnerability
PBBoard Version 2.0.5 is vulnerable to multiple vulnerabilities, including an Add Admin vulnerability, an upload vulnerability, and a file inclusion vulnerability. The Add Admin vulnerability allows an attacker to add an admin user to the system. The upload vulnerability allows an attacker to upload malicious files to the system. The file inclusion vulnerability allows an attacker to include malicious files from the system.
Mitigation:
Ensure that all user input is properly validated and sanitized. Ensure that all uploaded files are properly validated and sanitized. Ensure that all file inclusion requests are properly validated and sanitized.