Vendor
Stewart Howe
Products
1
CVEs
3
Across products
3
Status
Private
Products
1- 3 CVEs
Recent CVEs
3| CVE | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2009-0853 | 0.03 | — | 0.03 | Mar 9, 2009 | login.php in CelerBB 0.0.2, when magic_quotes_gpc is disabled, allows remote attackers to bypass authentication and obtain administrative access via special characters in the Username parameter, as demonstrated by an admin'# parameter value. | ||
| CVE-2009-0852 | 0.03 | — | 0.06 | Mar 9, 2009 | showme.php in CelerBB 0.0.2 allows remote attackers to obtain "reserved information" via the user parameter. | ||
| CVE-2009-0851 | 0.03 | — | 0.01 | Mar 9, 2009 | Multiple SQL injection vulnerabilities in CelerBB 0.0.2, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) viewforum.php and (2) viewtopic.php. |