Vulnerabilities > Openbb > Openbb > 1.0.8

DATE CVE VULNERABILITY TITLE RISK
2005-05-16 CVE-2005-1613 Cross-Site Scripting vulnerability in Openbb 1.0.8
Cross-site scripting (XSS) vulnerability in member.php in Open Bulletin Board (OpenBB) 1.0.8 allows remote attackers to inject arbitrary web script or HTML via the reverse parameter in a list action.
network
openbb
6.8
2005-05-16 CVE-2005-1612 SQL Injection vulnerability in Openbb 1.0.8
SQL injection vulnerability in read.php in Open Bulletin Board (OpenBB) 1.0.8 allows remote attackers to execute arbitrary SQL commands via the TID parameter.
network
low complexity
openbb
7.5
2004-12-31 CVE-2004-1966 Input Validation vulnerability in OpenBB
Multiple SQL injection vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) FID parameter in board.php, (2) sortorder, perpage, or id parameters in member.php, (3) forums parameter in search.php, or (4) PID or FID parameters in post.php.
network
low complexity
openbb
7.5
2004-04-25 CVE-2004-1965 Input Validation vulnerability in OpenBB
Multiple cross-site scripting (XSS) vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) redirect parameter to member.php, (2) to parameter to myhome.php (3) TID parameter to post.php, or (4) redirect parameter to index.php.
network
openbb
4.3