CVE-2014-10029
13.01.2015, 11:59
SQL injection vulnerability in profile.php in FluxBB before 1.4.13 and 1.5.x before 1.5.7 allows remote attackers to execute arbitrary SQL commands via the req_new_email parameter.
Vendor | Product | Version |
---|---|---|
fluxbb | fluxbb | 𝑥 ≤ 1.4.11 |
fluxbb | fluxbb | 1.5.0 |
fluxbb | fluxbb | 1.5.1 |
fluxbb | fluxbb | 1.5.2 |
fluxbb | fluxbb | 1.5.3 |
fluxbb | fluxbb | 1.5.4 |
fluxbb | fluxbb | 1.5.5 |
fluxbb | fluxbb | 1.5.6 |
𝑥
= Vulnerable software versions
References