Vulnerabilities > Elite Bulletin Board

DATE CVE VULNERABILITY TITLE RISK
2007-07-06 CVE-2007-3592 Input Validation vulnerability in Elite Bulletin Board
PM.php in Elite Bulletin Board before 1.0.10 allows remote authenticated users to delete arbitrary PM messages and conduct other attacks via modified id fields.
network
low complexity
elite-bulletin-board
6.5
2007-07-06 CVE-2007-3591 Input Validation vulnerability in Elite Bulletin Board Elite Bulletin Board 1.0.8/1.0.9
Unspecified vulnerability in Profile.php in Elite Bulletin Board before 1.0.10 allows remote attackers to modify profile information via unspecified vectors related to "a remote form," probably related to direct requests and missing authorization checks.
network
low complexity
elite-bulletin-board
5.0