First published: Fri Jun 02 2006(Updated: )
SQL injection vulnerability in modules.php in 4nNukeWare 4nForum 0.91 allows remote attackers to execute arbitrary SQL commands via the tid parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Warpspeed 4nforum | =0.91 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2006-2760 is typically classified as high due to its potential for remote attackers to execute arbitrary SQL commands.
To fix CVE-2006-2760, update your installation of 4nNukeWare 4nForum to a later version that addresses this SQL injection vulnerability.
CVE-2006-2760 affects 4nNukeWare 4nForum version 0.91.
The implications of CVE-2006-2760 include the risk of unauthorized access to the database, potential data loss, and complete system compromise.
To determine if your site is vulnerable to CVE-2006-2760, review the code for modules.php and verify if the tid parameter is susceptible to SQL injection.