CVE-2004-1982: Medium severity Yabb Yabb vulnerability
Published May 3, 2004
·Updated
Post.pl in YaBB 1 Gold SP 1.2 allows remote attackers to modify records in the board's .txt file via carriage return characters in the subject field.
Affected Software
2 affected components
Yabb Yabb=1_gold_-_sp_1
Yabb Yabb=1_gold_-_sp_1.2
Remediation
Patch Available
Patch Available
Event History
May 3, 2004
CVE Published
04:00 AM
May 10, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1982?
CVE-2004-1982 has a medium severity rating due to its ability to allow remote attackers to alter records.
2
How do I fix CVE-2004-1982?
To fix CVE-2004-1982, ensure proper input validation to prevent carriage return characters from being processed in the subject field.
3
Which versions of YaBB are affected by CVE-2004-1982?
CVE-2004-1982 affects YaBB version 1 Gold SP 1 and 1 Gold SP 1.2.
4
What are the potential impacts of CVE-2004-1982?
The potential impacts of CVE-2004-1982 include unauthorized modification of board records which may lead to data integrity issues.
5
Who can exploit CVE-2004-1982?
CVE-2004-1982 can be exploited by remote attackers who can manipulate the subject field of a post.