Unrated severityNVD Advisory· Published Aug 13, 2009· Updated Apr 23, 2026
CVE-2008-6970
CVE-2008-6970
Description
SQL injection vulnerability in dosearch.inc.php in UBB.threads 7.3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the Forum[] array parameter.
Affected products
31cpe:2.3:a:ubbcentral:ubb.threads:*:*:*:*:*:*:*:*+ 30 more
- cpe:2.3:a:ubbcentral:ubb.threads:*:*:*:*:*:*:*:*range: <=7.3.1
- cpe:2.3:a:ubbcentral:ubb.threads:3.4:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:3.5:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:5.0:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:5.5.1:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.0:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.1:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.2:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.3:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.3.1:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.4:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.4.1:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.4.2:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.4.3:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.4.4:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.5:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.5.1:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.5.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.5.2:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.5.2_beta2:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:6.5.3:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:7.0:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:7.1:*:*:*:*:*:*:*
- cpe:2.3:a:ubbcentral:ubb.threads:7.2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.gulftech.orgnvdExploit
- www.securityfocus.com/bid/31074nvdExploit
- secunia.com/advisories/31804nvdVendor Advisory
- www.ubbcentral.com/forums/ubbthreads.php/topics/216722/nvdVendor Advisory
- osvdb.org/47954nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/44976nvd
News mentions
0No linked articles in our index yet.