First published: Fri Feb 27 2009(Updated: )
SQL injection vulnerability in tag_board.php in the Tag Board module 4.0 and earlier for phpBB allows remote attackers to execute arbitrary SQL commands via the id parameter in a delete action.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Phpbb Tag Board | <=4.0 | |
phpBB |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-6314 is classified as a high severity vulnerability due to its potential for remote exploitation via SQL injection.
To fix CVE-2008-6314, upgrade to a version of the Tag Board module that is later than 4.0, which has patched the vulnerability.
CVE-2008-6314 specifically affects the Tag Board module versions 4.0 and earlier for phpBB.
CVE-2008-6314 is an SQL injection vulnerability that allows attackers to execute arbitrary SQL commands.
If you are using an affected version of the Tag Board module with phpBB, then CVE-2008-6314 poses a security risk to your forum.