Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 1 min 108 bronnen 1 kritiek 3 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2014-2339

MEDIUM · 6.5 CVSS Gepubliceerd: CWE-89

Beschrijving

Multiple SQL injection vulnerabilities in bbs/ajax.autosave.php in GNUboard 5.x and possibly earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) subject or (2) content parameter.

Vendors

Sir

Affected products

Gnuboard

References