Vulnerability index

Browse CVEs

23 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Burning Board MEDIUM 6.8
CVE-2008-7192

Cross-site request forgery (CSRF) vulnerability in index.php in WoltLab Burning Board (wBB) 3.0.1, and possibly other 3.x versions, allows remote att…

Mitigation only
Fix from $1,600 2009-09-09
Burning Board MEDIUM 5.0
CVE-2008-1717

WoltLab Community Framework (WCF) 1.0.6 in WoltLab Burning Board 3.0.5 allows remote attackers to obtain the full path via invalid (1) page and (2) f…

Mitigation only
Fix from $1,600 2008-04-09
Burning Board Lite MEDIUM 6.8
CVE-2008-1323

Cross-site request forgery (CSRF) vulnerability in index.php in WoltLab Burning Board Lite (wBB) 2 Beta 1 allows remote attackers to delete threads a…

No fix yet
Fix from $1,600 2008-03-13
Burning Board HIGH 7.5
CVE-2008-0857

SQL injection vulnerability in index.php in WoltLab Burning Board 3.0.3 PL 1 allows remote attackers to execute arbitrary SQL commands via the sortOr…

No fix yet
Fix from $1,950 2008-02-21
Burning Board Lite HIGH 7.5
CVE-2007-6518

Multiple SQL injection vulnerabilities in search.php in WoltLab Burning Board (wBB) Lite 1.0.2 pl3e allow remote attackers to execute arbitrary SQL c…

No fix yet
Fix from $1,950 2007-12-24
Burning Board HIGH 7.5
CVE-2007-1518

SQL injection vulnerability in usergroups.php in Woltlab Burning Board (wBB) 2.x allows remote attackers to execute arbitrary SQL commands via the ar…

Mitigation only
Fix from $1,950 2007-03-20
Burning Board Lite HIGH 7.5
CVE-2007-0812

SQL injection vulnerability in pms.php in Woltlab Burning Board (wBB) Lite 1.0.2pl3e and earlier allows remote authenticated users to execute arbitra…

No fix yet
Fix from $1,950 2007-02-07
Burning Board Lite MEDIUM 6.8
CVE-2006-6289

Woltlab Burning Board (wBB) Lite 1.0.2 does not properly unset variables when the input data includes a numeric parameter with a value matching an al…

No fix yet
Fix from $1,600 2006-12-05
Burning Board Lite HIGH 7.5
CVE-2006-6237

SQL injection vulnerability in the decode_cookie function in thread.php in Woltlab Burning Board Lite 1.0.2 allows remote attackers to execute arbitr…

No fix yet
Fix from $1,950 2006-12-03
Burning Book HIGH 7.5
CVE-2006-5508

Multiple SQL injection vulnerabilities in addentry.php in WoltLab Burning Book 1.1.2 allow remote attackers to execute arbitrary SQL commands via (1)…

Mitigation only
Fix from $1,950 2006-10-25
Burning Book HIGH 7.5
CVE-2006-5509

Eval injection vulnerability in addentry.php in WoltLab Burning Book 1.1.2 allows remote attackers to execute arbitrary PHP code via crafted POST req…

Mitigation only
Fix from $1,950 2006-10-25
Burning Board HIGH 7.5
CVE-2006-5029

SQL injection vulnerability in thread.php in WoltLab Burning Board (wBB) 2.3.x allows remote attackers to obtain the version numbers of PHP, MySQL, a…

Mitigation only
Fix from $1,950 2006-09-27
Burning Board MEDIUM 6.8
CVE-2006-4317

Cross-site scripting (XSS) vulnerability in attachment.php in WoltLab Burning Board (WBB) 2.3.5 allows remote attackers to inject arbitrary web scrip…

No fix yet
Fix from $1,600 2006-08-24
Burning Board HIGH 7.5
CVE-2006-3254

SQL injection vulnerability in newthread.php in Woltlab Burning Board (WBB) 2.0 RC2 allows remote attackers to execute arbitrary SQL commands via the…

No fix yet
Fix from $1,950 2006-06-28
Burning Board HIGH 7.5
CVE-2006-3255

SQL injection vulnerability in showmods.php in Woltlab Burning Board (WBB) 1.2 allows remote attackers to execute arbitrary SQL commands via the boar…

No fix yet
Fix from $1,950 2006-06-28
Burning Board HIGH 7.5
CVE-2006-3256

SQL injection vulnerability in report.php in Woltlab Burning Board (WBB) 2.3.1 allows remote attackers to execute arbitrary SQL commands via the post…

No fix yet
Fix from $1,950 2006-06-28
Burning Board HIGH 7.5
CVE-2006-3218

SQL injection vulnerability in profile.php in Woltlab Burning Board (WBB) 2.1.6 allows remote attackers to execute arbitrary SQL commands via the use…

Mitigation only
Fix from $1,950 2006-06-24
Burning Board HIGH 7.5
CVE-2006-3219

SQL injection vulnerability in thread.php in Woltlab Burning Board (WBB) 2.2.2 allows remote attackers to execute arbitrary SQL commands via the thre…

Mitigation only
Fix from $1,950 2006-06-24
Burning Board HIGH 7.5
CVE-2006-3220

SQL injection vulnerability in studienplatztausch.php in Woltlab Burning Board (WBB) 2.2.1 allows remote attackers to execute arbitrary SQL commands …

Mitigation only
Fix from $1,950 2006-06-24
Burning Board HIGH 7.5
CVE-2006-2792

SQL injection vulnerability in misc.php in Woltlab Burning Board (WBB) 2.3.4 allows remote attackers to execute arbitrary SQL commands via the sid pa…

Mitigation only
Fix from $1,950 2006-06-03
Burning Board HIGH 7.5
CVE-2005-2673

SQL injection vulnerability in modcp.php in WoltLab Burning Board 2.2.2 and 2.3.3 allows remote authenticated attackers to execute arbitrary SQL comm…

No fix yet
Fix from $1,950 2005-08-23
Burning Board HIGH 7.5
CVE-2005-1642

SQL injection vulnerability in the verify_email function in Woltlab Burning Board 2.x and earlier allows remote attackers to execute arbitrary SQL co…

No fix yet
Fix from $1,950 2005-05-17
Burning Book HIGH 7.5
CVE-2005-0284

SQL injection vulnerability in addentry.php in Woltlab Burning Book 1.0 Gold, 1.1.1e, and possibly other versions, allows remote attackers to execute…

Mitigation only
Fix from $1,950 2005-01-10