Vulnerabilities > Usebb > High

DATE CVE VULNERABILITY TITLE RISK
2020-01-27 CVE-2020-8088 Type Confusion vulnerability in Usebb 1.0.12
panel_login.php in UseBB 1.0.12 allows type juggling for login bypass because != is used instead of !== for password hashes, which mishandles hashes that begin with 0e followed by exclusively numerical characters.
network
low complexity
usebb CWE-843
7.5
2005-08-03 CVE-2005-2439 SQL Injection vulnerability in UseBB Search
SQL injection vulnerability in UseBB 0.5.1 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the search function.
network
low complexity
usebb
7.5