Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Hazl0Oh

#43605de 56,330
6.5CVSS total
Vulnerabilidades · 1
PT-2008-4464
6.5
2008-07-07
Mxchange · Xchangeboard · CVE-2008-3035
**Name of the Vulnerable Software and Affected Versions** XchangeBoard versions 1.70 Final and earlier **Description** The issue allows remote authenticated users to execute arbitrary SQL commands. This is achieved via the `boardID` parameter in the "newThread.php" file. **Recommendations** For XchangeBoard versions 1.70 Final and earlier, avoid using the `boardID` parameter in the newThread.php file until a fix is available. Consider restricting access to newThread.php to minimize the risk of exploitation.