Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-3256

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2006-3256
Last Modified 05 Sep 2008 05:06:38
Published 27 Jun 2006 09:45:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2006-3256

Summary

SQL injection vulnerability in report.php in Woltlab Burning Board (WBB) 2.3.1 allows remote attackers to execute arbitrary SQL commands via the postid parameter.

Vulnerable Systems

Application

  • Woltlab Burning Board 2.3.1


References

BID - 18597

BUGTRAQ - 20060622 WBB<<---v2.3.1"report.php" SQL Injection

XF - wbb-report-sql-injection(27351)

SECTRACK - 1016374


Last Updated: 27 May 2016 10:42:56