CVE-2014-2339
19.03.2014, 14:17
Multiple SQL injection vulnerabilities in bbs/ajax.autosave.php in GNUboard 5.x and possibly earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) subject or (2) content parameter.
| Vendor | Product | Version |
|---|---|---|
| sir | gnuboard | 𝑥 ≤ 5.0 |
| sir | gnuboard | 4.31.3 |
| sir | gnuboard | 4.31.4 |
| sir | gnuboard | 4.33.2 |
| sir | gnuboard | 4.34.20 |
| sir | gnuboard | 4.34.21 |
𝑥
= Vulnerable software versions