Vulnerabilities > CVE-2005-4602
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN nessus
Summary
SQL injection vulnerability in inc/function_upload.php in MyBB before 1.0.1 allows remote attackers to execute arbitrary SQL commands via the file extension of an uploaded file attachment.
Vulnerable Configurations
Nessus
NASL family | CGI abuses |
NASL id | MYBB_101.NASL |
description | The version of MyBB installed on the remote host is affected by a SQL injection vulnerability due to improper sanitization of user-supplied input to the to the file extension of an uploaded file. A remote, unauthenticated attacker can exploit this issue to manipulate SQL queries, resulting in the disclosure of sensitive information and modification of data. Note that the application is reportedly affected by an additional SQL injection vulnerability. However, Nessus has not tested for the additional issue. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 20373 |
published | 2006-01-02 |
reporter | This script is Copyright (C) 2006-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/20373 |
title | MyBB < 1.01 function_upload.php SQLi |
code |
|
References
- http://secunia.com/advisories/18281
- http://secunia.com/advisories/18281
- http://securityreason.com/securityalert/311
- http://securityreason.com/securityalert/311
- http://www.osvdb.org/22159
- http://www.osvdb.org/22159
- http://www.securityfocus.com/archive/1/420573/100/0/threaded
- http://www.securityfocus.com/archive/1/420573/100/0/threaded
- http://www.securityfocus.com/bid/16097
- http://www.securityfocus.com/bid/16097
- http://www.vupen.com/english/advisories/2006/0012
- http://www.vupen.com/english/advisories/2006/0012