Vulnerabilities > Aspindir > Philboard > 1.0

DATE CVE VULNERABILITY TITLE RISK
2008-04-25 CVE-2008-1939 SQL Injection vulnerability in Aspindir Philboard 1.0
Multiple SQL injection vulnerabilities in W1L3D4 Philboard 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) id and (2) topic parameters to (a) philboard_reply.asp, and the (3) forumid parameter to (b) philboard_newtopic.asp, different vectors than CVE-2007-2641 and CVE-2007-0920.
network
low complexity
aspindir CWE-89
7.5