Vulnerabilities > Mybulletinboard > Mybulletinboard > 1.4.5

DATE CVE VULNERABILITY TITLE RISK
2009-06-26 CVE-2009-2230 SQL Injection vulnerability in Mybulletinboard
SQL injection vulnerability in inc/datahandlers/user.php in MyBB (aka MyBulletinBoard) before 1.4.7 allows remote authenticated users to execute arbitrary SQL commands via the birthdayprivacy parameter.
network
low complexity
mybulletinboard CWE-89
7.5