Unrated severityNVD Advisory· Published Jan 9, 2006· Updated Apr 16, 2026
CVE-2006-0139
CVE-2006-0139
Description
The send-private-message functionality (send-private-message.asp) in PD9 Software MegaBBS 2.1 allows remote attackers to read private messages of other users via a modified replyid parameter.
Affected products
2cpe:2.3:a:pd9_software:megabbs:2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:pd9_software:megabbs:2.0:*:*:*:*:*:*:*
- cpe:2.3:a:pd9_software:megabbs:2.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- www.pd9soft.com/megabbs/forums/thread-view.aspnvdPatchVendor Advisory
- www.securityfocus.com/bid/16168nvdPatch
- secunia.com/advisories/18342nvdExploitPatchVendor Advisory
- www.hamid.ir/security/megabbs.txtnvdExploitPatchVendor Advisory
- securitytracker.com/idnvd
- www.vupen.com/english/advisories/2006/0095nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/24050nvd
News mentions
0No linked articles in our index yet.