CVE-2006-3255: SQL Injection
Published Jun 27, 2006
·Updated
SQL injection vulnerability in showmods.php in Woltlab Burning Board (WBB) 1.2 allows remote attackers to execute arbitrary SQL commands via the boardid parameter.
Affected Software
1 affected component
WoltLab Burning Board=1.2
Event History
Jun 27, 2006
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-3255?
CVE-2006-3255 is classified with a medium severity due to its potential for SQL injection attacks.
2
How do I fix CVE-2006-3255?
To fix CVE-2006-3255, update to a patched version of Woltlab Burning Board or validate and sanitize user input before processing.
3
Who is affected by CVE-2006-3255?
CVE-2006-3255 affects users of Woltlab Burning Board version 1.2.
4
What type of attack is possible with CVE-2006-3255?
CVE-2006-3255 allows remote attackers to execute arbitrary SQL commands through an SQL injection attack.
5
When was CVE-2006-3255 reported?
CVE-2006-3255 was reported in June 2006.