Multiple SQL injection vulnerabilities in BroadBoard Instant ASP Message Board allow remote attackers to run arbitrary SQL commands via the (1) keywords parameter to search.asp, (2) handle parameter to profile.asp, (3) txtUserHandle parameter to reg2.asp or (4) txtUserEmail parameter to forgot.asp.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2005-02-20T05:00:00
Updated: 2017-07-10T14:57:01
Reserved: 2005-02-20T00:00:00
Link: CVE-2004-1555
JSON object: View
NVD Information
Status : Modified
Published: 2004-12-31T05:00:00.000
Modified: 2017-07-11T01:31:08.387
Link: CVE-2004-1555
JSON object: View
Redhat Information
No data.
CWE