Vulnerabilities > CVE-2007-2212 - Unspecified vulnerability in Mybb 1.2.5

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
mybb
exploit available

Summary

Multiple SQL injection vulnerabilities in calendar.php in MyBB (aka MyBulletinBoard) 1.2.5 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) year or (2) month parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Vulnerable Configurations

Part Description Count
Application
Mybb
1

Exploit-Db

descriptionMyBulletinBoard (MyBB) <= 1.2.5 calendar.php Blind SQL Injection Exploit. CVE-2007-2211,CVE-2007-2212. Webapps exploit for php platform
fileexploits/php/webapps/3780.pl
idEDB-ID:3780
last seen2016-01-31
modified2007-04-23
platformphp
port
published2007-04-23
reporter0x86
sourcehttps://www.exploit-db.com/download/3780/
titleMyBulletinBoard MyBB <= 1.2.5 calendar.php Blind SQL Injection Exploit
typewebapps