Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Görkem Haşin

#33191of 56,336
8.2Total CVSS
Vulnerabilities · 1
PT-2026-41451
8.2
2026-05-16
Layerbb · Layerbb · CVE-2021-47954
**Name of the Vulnerable Software and Affected Versions** LayerBB version 1.1.4 **Description** An SQL injection allows unauthenticated attackers to manipulate database queries by injecting SQL code. This is achieved by sending POST requests to the '/search.php' endpoint using malicious values in the `search query` parameter, specifically employing CASE WHEN statements to extract sensitive database information. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.