Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Minibb HIGH 7.5
CVE-2014-9254

bb_func_unsub.php in MiniBB 3.1 before 20141127 uses an incorrect regular expression, which allows remote attackers to conduct SQl injection attacks …

Fix: after 3.1
Fix from $1,950 2014-12-31
Minibb HIGH 7.5
CVE-2008-2067

SQL injection vulnerability in bb_admin.php in miniBB 2.2a allows remote attackers to execute arbitrary SQL commands via the whatus parameter in a se…

Mitigation only
Fix from $1,950 2008-05-02
Minibb MEDIUM 6.8
CVE-2008-2029

Multiple SQL injection vulnerabilities in (1) setup_mysql.php and (2) setup_options.php in miniBB 2.2 and possibly earlier, when register_globals is …

Fix: after 2.2
Fix from $1,600 2008-04-30
Minibb HIGH 7.5
CVE-2007-5719

SQL injection vulnerability in bb_func_search.php in miniBB 2.1 allows remote attackers to execute arbitrary SQL commands via the table parameter to …

No fix yet
Fix from $1,950 2007-10-30
Minibb HIGH 7.8
CVE-2007-3272

Directory traversal vulnerability in index.php in MiniBB 2.0.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the language par…

No fix yet
Fix from $1,950 2007-06-19
Minibb HIGH 7.5
CVE-2007-2317EPSS 8%

Multiple PHP remote file inclusion vulnerabilities in MiniBB Forum 1.5a and earlier, as used by TOSMO/Mambo 4.0.12 and probably other products, allow…

Fix: after 4.0.12
Fix from $1,950 2007-04-26
Forum HIGH 10.0
CVE-2006-7153

PHP remote file inclusion vulnerability in index.php in MiniBB Forum 2 allows remote attackers to execute arbitrary code via a URL in the pathToFiles…

Mitigation only
Fix from $1,950 2007-03-07
Keyword Replacer HIGH 10.0
CVE-2006-7156

PHP remote file inclusion vulnerability in addon_keywords.php in Keyword Replacer (keyword_replacer) 1.0 and earlier, a module for miniBB, allows rem…

Fix: after 1.0
Fix from $1,950 2007-03-07
Minibb HIGH 7.5
CVE-2006-5674

Multiple PHP remote file inclusion vulnerabilities in miniBB 2.0.2 and earlier, when register_globals is enabled, allow remote attackers to execute a…

Fix: after 2.0.2
Fix from $1,950 2006-11-03
Minibb MEDIUM 6.8
CVE-2006-5673EPSS 6%

PHP remote file inclusion vulnerability in bb_func_txt.php in miniBB 2.0.2 and earlier, when register_globals is enabled, allows remote attackers to …

Fix: after 2.0.2
Fix from $1,600 2006-11-03
Minibb HIGH 7.5
CVE-2006-3955EPSS 10%

Multiple PHP remote file inclusion vulnerabilities in MiniBB Forum 1.5a allow remote attackers to execute arbitrary PHP code via a URL in the absolut…

No fix yet
Fix from $1,950 2006-08-01
Forum HIGH 7.5
CVE-2006-3690

Multiple PHP remote file inclusion vulnerabilities in MiniBB Forum 1.5a and earlier allow remote attackers to execute arbitrary PHP code via a URL in…

No fix yet
Fix from $1,950 2006-07-21
Minibb HIGH 7.5
CVE-2004-2456

SQL injection vulnerability in index.php in miniBB 1.7f and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter …

Patch available
Fix from $1,950 2004-12-31