Vulnerabilities > SIR > Gnuboard > 4.31.03

DATE CVE VULNERABILITY TITLE RISK
2011-11-04 CVE-2011-4066 SQL Injection vulnerability in SIR Gnuboard
SQL injection vulnerability in bbs/tb.php in Gnuboard 4.33.02 and earlier allows remote attackers to execute arbitrary SQL commands via the PATH_INFO.
network
low complexity
sir CWE-89
7.5
2009-01-27 CVE-2009-0290 Path Traversal vulnerability in SIR Gnuboard 4.31.03
Directory traversal vulnerability in common.php in SIR GNUBoard 4.31.03 allows remote attackers to include and execute arbitrary local files via a ..
network
sir CWE-22
6.8