VYPR
Unrated severityNVD Advisory· Published Mar 20, 2007· Updated Apr 23, 2026

CVE-2007-1518

CVE-2007-1518

Description

SQL injection vulnerability in usergroups.php in Woltlab Burning Board (wBB) 2.x allows remote attackers to execute arbitrary SQL commands via the array index of the applicationids array.

Affected products

23
  • cpe:2.3:a:woltlab:burning_board:2.0:*:*:*:*:*:*:*+ 22 more
    • cpe:2.3:a:woltlab:burning_board:2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.0_beta_3:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.0_beta_4:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.0_beta_5:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.0_rc1:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.0_rc2:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.1.5:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.1.6:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.2.1:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.2.2:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.2.3:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.3.0:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.3.1:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.3.2:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.3.3:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.3.4:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.3.5:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.3.6:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.4:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.5:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.6:*:*:*:*:*:*:*
    • cpe:2.3:a:woltlab:burning_board:2.7:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.