Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2004-1555
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2004-1555

Description:
Multiple SQL injection vulnerabilities in BroadBoard Instant ASP Message Board allow remote attackers to run arbitrary SQL commands via the (1) keywords parameter to search.asp, (2) handle parameter to profile.asp, (3) txtUserHandle parameter to reg2.asp or (4) txtUserEmail parameter to forgot.asp.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/17501
  http://xforce.iss.net/xforce/xfdb/17498
  http://xforce.iss.net/xforce/xfdb/17500
  http://xforce.iss.net/xforce/xfdb/17502

ST
  1011419

SAID
  Secunia Advisory: SA12658

BUGTRAQ
  http://marc.theaimsgroup.com/?l=bugtraq&m=109630777608244&w=2

BID
  11250


Return to the previous page.