Skip to content
Noroxi

woltlab records

46 published records for vendor woltlab.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
27
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

46 records
  • CVE-2006-6237
    31Monitor

    SQL injection vulnerability in the decode_cookie function in thread.php in Woltlab Burning Board Lite 1.0.2 allows remote attackers to execu

    HighCVSS 7.5Proof of conceptEPSS 3%

    woltlab · burning board liteDec 3, 2006

  • CVE-2002-1505
    31Monitor

    SQL injection vulnerability in board.php for WoltLab Burning Board (wBB) 2.0 RC 1 and earlier allows remote attackers to modify the database

    HighCVSS 7.5Proof of conceptEPSS 2%

    woltlab · burning boardApr 2, 2003

  • CVE-2006-1094
    31Monitor

    SQL injection vulnerability in Datenbank MOD 2.7 and earlier for Woltlab Burning Board allows remote attackers to execute arbitrary SQL comm

    HighCVSS 7.5Proof of conceptEPSS 2%

    woltlab · burning boardMar 9, 2006

  • CVE-2007-6518
    31Monitor

    Multiple SQL injection vulnerabilities in search.php in WoltLab Burning Board (wBB) Lite 1.0.2 pl3e allow remote attackers to execute arbitr

    HighCVSS 7.5Proof of conceptEPSS 2%

    woltlab · burning board liteDec 24, 2007

  • CVE-2002-0903
    31Monitor

    register.php for WoltLab Burning Board (wbboard) 1.1.1 uses a small number of random values for the "code" parameter that is provided to act

    HighCVSS 7.5No exploitEPSS 2%

    woltlab · burning boardOct 4, 2002

  • CVE-2010-1338
    30Monitor

    SQL injection vulnerability in ts_other.php in the Teamsite Hack plugin 3.0 and earlier for WoltLab Burning Board allows remote attackers to

    HighCVSS 7.5Proof of conceptEPSS 2%

    woltlab · burning boardApr 9, 2010

  • CVE-2005-3369
    30Monitor

    Multiple SQL injection vulnerabilities in the Info-DB module (info_db.php) in Woltlab Burning Board 2.7 and earlier allow remote attackers t

    HighCVSS 7.5Proof of conceptEPSS 1%

    woltlab · burning boardOct 30, 2005

  • CVE-2005-1642
    30Monitor

    SQL injection vulnerability in the verify_email function in Woltlab Burning Board 2.x and earlier allows remote attackers to execute arbitra

    HighCVSS 7.5Proof of conceptEPSS 1%

    woltlab · burning boardMay 17, 2005

  • CVE-2007-0812
    30Monitor

    SQL injection vulnerability in pms.php in Woltlab Burning Board (wBB) Lite 1.0.2pl3e and earlier allows remote authenticated users to execut

    HighCVSS 7.5Proof of conceptEPSS 1%

    woltlab · burning board liteFeb 7, 2007

  • CVE-2006-5509
    30Monitor

    Eval injection vulnerability in addentry.php in WoltLab Burning Book 1.1.2 allows remote attackers to execute arbitrary PHP code via crafted

    HighCVSS 7.5Proof of conceptEPSS 1%

    woltlab · burning bookOct 25, 2006

  • CVE-2006-2792
    30Monitor

    SQL injection vulnerability in misc.php in Woltlab Burning Board (WBB) 2.3.4 allows remote attackers to execute arbitrary SQL commands via t

    HighCVSS 7.5No exploitEPSS 1%

    woltlab · burning boardJun 2, 2006

  • CVE-2006-3218
    30Monitor

    SQL injection vulnerability in profile.php in Woltlab Burning Board (WBB) 2.1.6 allows remote attackers to execute arbitrary SQL commands vi

    HighCVSS 7.5No exploitEPSS 1%

    woltlab · burning boardJun 24, 2006

  • CVE-2006-3219
    30Monitor

    SQL injection vulnerability in thread.php in Woltlab Burning Board (WBB) 2.2.2 allows remote attackers to execute arbitrary SQL commands via

    HighCVSS 7.5No exploitEPSS 1%

    woltlab · burning boardJun 24, 2006

  • CVE-2006-3220
    30Monitor

    SQL injection vulnerability in studienplatztausch.php in Woltlab Burning Board (WBB) 2.2.1 allows remote attackers to execute arbitrary SQL

    HighCVSS 7.5No exploitEPSS 1%

    woltlab · burning boardJun 24, 2006

  • CVE-2006-5029
    30Monitor

    SQL injection vulnerability in thread.php in WoltLab Burning Board (wBB) 2.3.x allows remote attackers to obtain the version numbers of PHP,

    HighCVSS 7.5No exploitEPSS 1%

    woltlab · burning boardSep 27, 2006

  • CVE-2006-2569
    30Monitor

    SQL injection vulnerability in links.php in 4R Linklist 1.0 RC2 and earlier, a module for Woltlab Burning Board, allows remote attackers to

    HighCVSS 7.5Proof of conceptEPSS 1%

    4r linklist · 4r linklistMay 24, 2006

  • CVE-2006-3256
    30Monitor

    SQL injection vulnerability in report.php in Woltlab Burning Board (WBB) 2.3.1 allows remote attackers to execute arbitrary SQL commands via

    HighCVSS 7.5Proof of conceptEPSS 1%

    woltlab · burning boardJun 27, 2006

  • CVE-2006-3254
    30Monitor

    SQL injection vulnerability in newthread.php in Woltlab Burning Board (WBB) 2.0 RC2 allows remote attackers to execute arbitrary SQL command

    HighCVSS 7.5Proof of conceptEPSS 1%

    woltlab · burning boardJun 27, 2006

  • CVE-2006-3255
    30Monitor

    SQL injection vulnerability in showmods.php in Woltlab Burning Board (WBB) 1.2 allows remote attackers to execute arbitrary SQL commands via

    HighCVSS 7.5Proof of conceptEPSS 1%

    woltlab · burning boardJun 27, 2006

  • CVE-2005-0284
    30Monitor

    SQL injection vulnerability in addentry.php in Woltlab Burning Book 1.0 Gold, 1.1.1e, and possibly other versions, allows remote attackers t

    HighCVSS 7.5No exploitEPSS 1%

    woltlab · burning bookJan 10, 2005

  • CVE-2005-0661
    30Monitor

    SQL injection vulnerability in the getwbbuserdata function in session.php for Woltlab Burning Board 2.0.3 through 2.3.0 allows remote attack

    HighCVSS 7.5No exploitEPSS 1%

    woltlab · burning boardMay 2, 2005

  • CVE-2006-5508
    30Monitor

    Multiple SQL injection vulnerabilities in addentry.php in WoltLab Burning Book 1.1.2 allow remote attackers to execute arbitrary SQL command

    HighCVSS 7.5Proof of conceptEPSS 1%

    woltlab · burning bookOct 25, 2006

  • CVE-2007-0388
    30Monitor

    SQL injection vulnerability in search.php in Woltlab Burning Board (wBB) 1.0.2 and earlier, and 2.3.6 and earlier in the 2.x series, allows

    HighCVSS 7.5Proof of conceptEPSS 1%

    woltlab · burning boardJan 19, 2007

  • CVE-2005-2673
    30Monitor

    SQL injection vulnerability in modcp.php in WoltLab Burning Board 2.2.2 and 2.3.3 allows remote authenticated attackers to execute arbitrary

    HighCVSS 7.5Proof of conceptEPSS 1%

    woltlab · burning boardAug 23, 2005

  • CVE-2008-4627
    30Monitor

    SQL injection vulnerability in the rGallery plugin 1.09 for WoltLab Burning Board (WBB) allows remote attackers to execute arbitrary SQL com

    HighCVSS 7.5Proof of conceptEPSS 1%

    rgallery · rgallery pluginOct 20, 2008