Security Advisory

CVE-2008-1939

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-04-24 19:00:00
Last updated 2024-08-07 08:41:00
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Multiple SQL injection vulnerabilities in W1L3D4 Philboard 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) id and (2) topic parameters to (a) philboard_reply.asp, and the (3) forumid parameter to (b) philboard_newtopic.asp, different vectors than CVE-2007-2641 and CVE-2007-0920.