2455Third-party advisory
http://securityreason.com/securityalert/2455 CVE-2007-1518
Woltlab Burning Board 2.x - 'usergroups.php' SQL Injection
Record summary
CVE-2007-1518 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
SQL injection vulnerability in usergroups.php in Woltlab Burning Board (wBB) 2.x allows remote attackers to execute arbitrary SQL commands via the array index of the applicationids array.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBWoltlab Burning Board 2.x - 'usergroups.php' SQL InjectionExploitDB exploitby x666Not analyzed1 file
References
520070314 Woltab Burning Board SQL Injection usergroups.phpmailing list
http://www.securityfocus.com/archive/1/462860/100/0/threaded 20070315 Re: [Full-disclosure] Woltab Burning Board SQL Injection usergroups.phpmailing list
http://www.securityfocus.com/archive/1/463002/100/0/threaded 22970vdb entry
http://www.securityfocus.com/bid/22970 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2007-1518