CVE-2014-9254
31.12.2014, 21:59
bb_func_unsub.php in MiniBB 3.1 before 20141127 uses an incorrect regular expression, which allows remote attackers to conduct SQl injection attacks via the code parameter in an unsubscribe action to index.php.
| Vendor | Product | Version |
|---|---|---|
| minibb | minibb | 𝑥 ≤ 3.1 |
𝑥
= Vulnerable software versions
References