Vulnerabilities > Infopop > Ultimate Bulletin Board > 6.0

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-1199 SQL Injection vulnerability in Infopop Ultimate Bulletin Board 6.0
SQL injection vulnerability in printthread.php in UBB.Threads allows remote attackers to execute arbitrary SQL commands via the main parameter.
network
low complexity
infopop
7.5
2002-03-25 CVE-2002-0118 Unspecified vulnerability in Infopop Ultimate Bulletin Board
Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.2.0 Beta Release 1.0 allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag.
network
low complexity
infopop
7.5