Unrated severityNVD Advisory· Published May 31, 2005· Updated Apr 16, 2026
CVE-2005-1833
CVE-2005-1833
Description
Multiple SQL injection vulnerabilities in MyBulletinBoard (MyBB) 1.00 RC4 allow remote attackers to execute arbitrary SQL commands via the (1) eid parameter to calendar.php, (2) idsql parameter to online.php, (3) usersearch parameter to memberlist.php, (4) pid parameter to editpost.php, (5) fid parameter to forumdisplay.php, (6) tid parameter to newreply.php, (7) sid parameter to search.php, (8) tid or (9) pid parameter to showthread.php, (10) tid parameter to usercp2.php, (11) tid parameter to printthread.php, or (12) pid parameter to reputation.php.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- secunia.com/advisories/15552nvdExploitPatchVendor Advisory
- www.mybboard.com/community/showthread.phpnvdExploitPatchVendor Advisory
- marc.infonvd
- www.osvdb.org/17024nvd
News mentions
0No linked articles in our index yet.