Unrated severityNVD Advisory· Published Dec 3, 2006· Updated Apr 23, 2026
CVE-2006-6237
CVE-2006-6237
Description
SQL injection vulnerability in the decode_cookie function in thread.php in Woltlab Burning Board Lite 1.0.2 allows remote attackers to execute arbitrary SQL commands via the threadvisit Cookie parameter.
Affected products
1- cpe:2.3:a:woltlab:burning_board_lite:1.0.2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- retrogod.altervista.org/wbblite_102_sql_mqg_bypass.htmlnvdExploit
- secunia.com/advisories/23077nvdVendor Advisory
- securityreason.com/securityalert/1955nvd
- www.securityfocus.com/archive/1/452561/100/0/threadednvd
- www.vupen.com/english/advisories/2006/4694nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/30561nvd
- www.exploit-db.com/exploits/2841nvd
News mentions
0No linked articles in our index yet.