CVE-2005-1170: SQL Injection
Published Apr 18, 2005
·Updated
SQL injection vulnerability in mod.php in the datenbank module for phpBB allows remote attackers to execute arbitrary SQL commands via the id parameter.
Affected Software
1 affected component
datenbank module datenbank module
Event History
Apr 18, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1170?
CVE-2005-1170 has been classified as a medium severity vulnerability.
2
How do I fix CVE-2005-1170?
To fix CVE-2005-1170, you should upgrade the Datenbank module for phpBB to the latest version that patches this SQL injection vulnerability.
3
What impact does CVE-2005-1170 have on my phpBB installation?
CVE-2005-1170 allows remote attackers to execute arbitrary SQL commands, potentially compromising the database.
4
Is my phpBB version vulnerable to CVE-2005-1170?
If you are using an older version of the Datenbank module for phpBB, it is likely vulnerable to CVE-2005-1170.
5
Who is affected by CVE-2005-1170?
Any user of the Datenbank module for phpBB that has not patched this vulnerability is affected by CVE-2005-1170.