CVE-2006-2792: SQL Injection
Published Jun 3, 2006
·Updated
SQL injection vulnerability in misc.php in Woltlab Burning Board (WBB) 2.3.4 allows remote attackers to execute arbitrary SQL commands via the sid parameter.
Affected Software
1 affected component
WoltLab Burning Board=2.3.4
Event History
Jun 3, 2006
CVE Published
01:02 AM
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-2792?
CVE-2006-2792 is considered a high severity vulnerability due to its potential for remote SQL execution.
2
How do I fix CVE-2006-2792?
To fix CVE-2006-2792, upgrade to a version of Woltlab Burning Board that is not affected by this vulnerability.
3
What type of vulnerability is CVE-2006-2792?
CVE-2006-2792 is classified as an SQL injection vulnerability.
4
What software is affected by CVE-2006-2792?
CVE-2006-2792 affects Woltlab Burning Board version 2.3.4.
5
Can CVE-2006-2792 be exploited remotely?
Yes, CVE-2006-2792 can be exploited remotely by an attacker through the sid parameter.