Vulnerabilities > CVE-2007-0812 - SQL Injection vulnerability in Woltlab Burning Board Lite Pms.PHP
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
SQL injection vulnerability in pms.php in Woltlab Burning Board (wBB) Lite 1.0.2pl3e and earlier allows remote authenticated users to execute arbitrary SQL commands via the pmid[0] parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
Exploit-Db
description | Woltlab Burning Board Lite <= 1.0.2pl3e (pms.php) SQL Injection Exploit. CVE-2007-0812. Webapps exploit for php platform |
file | exploits/php/webapps/3262.php |
id | EDB-ID:3262 |
last seen | 2016-01-31 |
modified | 2007-02-03 |
platform | php |
port | |
published | 2007-02-03 |
reporter | rgod |
source | https://www.exploit-db.com/download/3262/ |
title | Woltlab Burning Board Lite <= 1.0.2pl3e pms.php SQL Injection Exploit |
type | webapps |