PT-2025-43536 · Gnuboard · Gnuboard

CVE-2025-61464

·

Published

2025-10-23

·

Updated

2025-10-30

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions gnuboard versions prior to 4.36.05
Description gnuboard4 is susceptible to a Second-order SQL Injection issue through the search table parameter within the bbs/search.php file. This allows for potential unauthorized database access or modification.
Recommendations Update to gnuboard version 4.36.05 or later.

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-61464

Affected Products

Gnuboard