CVE-2009-1033
20.03.2009, 18:30
SQL injection vulnerability in misc.php in DeluxeBB 1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the qorder parameter, a different vector than CVE-2005-2989 and CVE-2006-2503.
| Vendor | Product | Version |
|---|---|---|
| deluxebb | deluxebb | 𝑥 ≤ 1.3 |
| deluxebb | deluxebb | 1.0 |
| deluxebb | deluxebb | 1.1 |
| deluxebb | deluxebb | 1.2 |
| deluxebb | deluxebb | 1.05 |
| deluxebb | deluxebb | 1.06 |
| deluxebb | deluxebb | 1.07 |
| deluxebb | deluxebb | 1.08 |
| deluxebb | deluxebb | 1.09 |
𝑥
= Vulnerable software versions
References