CVE-2006-3256: SQL Injection
Published Jun 27, 2006
·Updated
SQL injection vulnerability in report.php in Woltlab Burning Board (WBB) 2.3.1 allows remote attackers to execute arbitrary SQL commands via the postid parameter.
Affected Software
1 affected component
WoltLab Burning Board=2.3.1
Event History
Jun 27, 2006
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-3256?
The severity of CVE-2006-3256 is critical due to its potential for remote SQL injection attacks.
2
How do I fix CVE-2006-3256?
To fix CVE-2006-3256, upgrade to a patched version of Woltlab Burning Board that addresses this SQL injection vulnerability.
3
What software is affected by CVE-2006-3256?
CVE-2006-3256 affects Woltlab Burning Board version 2.3.1.
4
What type of vulnerability is CVE-2006-3256?
CVE-2006-3256 is an SQL injection vulnerability that allows attackers to execute arbitrary SQL commands.
5
Can CVE-2006-3256 be exploited remotely?
Yes, CVE-2006-3256 can be exploited remotely through the affected application by manipulating the postid parameter.