CVE-2007-6518: SQL Injection
Published Dec 24, 2007
·Updated
Multiple SQL injection vulnerabilities in search.php in WoltLab Burning Board (wBB) Lite 1.0.2 pl3e allow remote attackers to execute arbitrary SQL commands via the (1) showposts, (2) sortby, and (3) sortorder parameters.
Affected Software
2 affected components
Woltlab Burning Board Lite=1.0.2
Woltlab Burning Board Lite=1.0.2_pl3e
Event History
Dec 24, 2007
CVE Published
08:46 PM
Dec 25, 2007
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-6518?
CVE-2007-6518 is considered a high severity vulnerability due to its potential for remote exploitation through SQL injection.
2
How can I fix CVE-2007-6518?
To fix CVE-2007-6518, update to a patched version of WoltLab Burning Board Lite that eliminates these SQL injection vulnerabilities.
3
What parameters are affected by CVE-2007-6518?
CVE-2007-6518 affects the showposts, sortby, and sortorder parameters in search.php.
4
Who is affected by CVE-2007-6518?
Users of WoltLab Burning Board Lite version 1.0.2 and 1.0.2 pl3e are affected by CVE-2007-6518.
5
What type of vulnerability is CVE-2007-6518?
CVE-2007-6518 is classified as an SQL injection vulnerability.