CVE-2005-1642: SQL Injection
Published May 17, 2005
·Updated
SQL injection vulnerability in the verifyemail function in Woltlab Burning Board 2.x and earlier allows remote attackers to execute arbitrary SQL commands via the $email variable.
Affected Software
1 affected component
WoltLab Burning Board=2.0
Event History
May 17, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1642?
CVE-2005-1642 has a high severity rating due to the potential for remote SQL injection attacks.
2
How do I fix CVE-2005-1642?
To fix CVE-2005-1642, update to a version of Woltlab Burning Board that is not vulnerable, preferably a version higher than 2.0.
3
What are the consequences of exploiting CVE-2005-1642?
Exploiting CVE-2005-1642 can allow attackers to execute arbitrary SQL commands, potentially compromising the database.
4
Which versions of Woltlab Burning Board are affected by CVE-2005-1642?
CVE-2005-1642 affects Woltlab Burning Board 2.x and earlier versions.
5
What is the exploit vector for CVE-2005-1642?
The exploit vector for CVE-2005-1642 is through the verify_email function, manipulating the $email variable.