Back to search
CVE-2006-2333
Published: May 12, 2006
Modified: Aug 7, 2024
PUBLISHED
Description
Multiple SQL injection vulnerabilities in MyBB (aka MyBulletinBoard) 1.1.1 allow remote attackers to execute arbitrary SQL commands via the e-mail address when registering for a forum that requires e-mail verification, which is not properly handled in (1) usercp.php and (2) member.php.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
885
third-party-advisory
x_refsource_SREASON
mybb-usercp-member-sql-injection(26545)
vdb-entry
x_refsource_XF
20060507 [KAPDA] MyBB1.1.1~Email Verification in User Activation ~SQL Injection Attack
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now