Unrated severityNVD Advisory· Published May 3, 2005· Updated Apr 16, 2026
CVE-2005-1378
CVE-2005-1378
Description
SQL injection vulnerability in posting_notes.php in the notes module for phpBB allows remote attackers to execute arbitrary SQL commands via the p parameter, which is used in the $post_id variable, and other attack vectors.
Affected products
1- cpe:2.3:a:oxpus:phpbb_personal_notes_module:*:*:*:*:*:*:*:*Range: <=1.4.6
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8News mentions
0No linked articles in our index yet.