CVE-2006-3760: SQL Injection
Published Jul 21, 2006
·Updated
Multiple SQL injection vulnerabilities in MyBB (aka MyBulletinBoard) 1.1.4 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected Software
1 affected component
MyBulletinBoard MyBulletinBoard=1.1.4
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Jul 21, 2006
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-3760?
CVE-2006-3760 is classified as a critical vulnerability due to its potential to allow remote attackers to execute arbitrary SQL commands.
2
How do I fix CVE-2006-3760?
To fix CVE-2006-3760, upgrade your MyBB to a version that is not affected, as there are no available patches for version 1.1.4.
3
Which versions of MyBB are affected by CVE-2006-3760?
CVE-2006-3760 specifically affects MyBB version 1.1.4.
4
What type of vulnerability is CVE-2006-3760?
CVE-2006-3760 is a SQL injection vulnerability that enables execution of arbitrary SQL commands.
5
What are the risks associated with CVE-2006-3760?
Exploitation of CVE-2006-3760 can lead to unauthorized access to the database, manipulation of data, or the retrieval of sensitive information.