Unrated severityNVD Advisory· Published May 22, 2009· Updated Apr 23, 2026
CVE-2009-1747
CVE-2009-1747
Description
SQL injection vulnerability in index.php in 26th Avenue bSpeak 1.10 allows remote attackers to execute arbitrary SQL commands via the forumid parameter in a post action.
Affected products
1- cpe:2.3:a:26thavenue:bspeak:1.10:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.securityfocus.com/bid/35049nvdExploit
- secunia.com/advisories/35139nvdVendor Advisory
- www.exploit-db.com/exploits/8751nvd
News mentions
0No linked articles in our index yet.