CVE-2009-1947
05.06.2009, 21:30
SQL injection vulnerability in the UnbDbEncode function in unb_lib/database.lib.php in Unclassified NewsBoard (UNB) 1.6.4 allows remote attackers to execute arbitrary SQL commands via the Query parameter in a search action to forum.php, a different vector than CVE-2005-3686.
Vendor | Product | Version |
---|---|---|
newsboard | unclassified_newsboard | 1.6.4 |
𝑥
= Vulnerable software versions
References