Skip to content
Noroxi

nextbbs records

3 published records for vendor nextbbs.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

3 records
  • CVE-2012-1602
    31Monitor

    user.php in NextBBS 0.6 allows remote attackers to bypass authentication and gain administrator access by setting the userkey cookie to 1.

    HighCVSS 7.5No exploitEPSS 2%

    nextbbs · nextbbsOct 1, 2012

  • CVE-2012-1603
    30Monitor

    Multiple SQL injection vulnerabilities in ajaxserver.php in NextBBS 0.6 allow remote attackers to execute arbitrary SQL commands via the (1)

    HighCVSS 7.5Proof of conceptEPSS 1%

    nextbbs · nextbbsOct 1, 2012

  • CVE-2012-1604
    18Monitor

    Cross-site scripting (XSS) vulnerability in NextBBS 0.6 allows remote attackers to inject arbitrary web script or HTML via the do parameter

    MediumCVSS 4.3Proof of conceptEPSS 2%

    nextbbs · nextbbsOct 1, 2012