SQL injection vulnerability in the rGallery plugin 1.2.3 for WoltLab Burning Board (WBB3) allows remote attackers to execute arbitrary SQL commands via the userID parameter in the RGalleryUserGallery page to index.php, a different vector than CVE-2008-4627.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2009-07-02T10:00:00

Updated: 2017-09-18T12:57:01

Reserved: 2009-07-02T00:00:00


Link: CVE-2009-2311

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2009-07-02T10:30:00.657

Modified: 2017-09-19T01:29:02.733


Link: CVE-2009-2311

JSON object: View

cve-icon Redhat Information

No data.

CWE