VYPR

Vendor CVEs

Woltlab

All CVEs

52 total · sorted by risk
  • CVE-2005-0284Jan 10, 2005
    risk 0.00cvss —epss 0.01

    SQL injection vulnerability in addentry.php in Woltlab Burning Book 1.0 Gold, 1.1.1e, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the user-agent parameter.

  • CVE-2002-0903Oct 4, 2002
    risk 0.00cvss —epss 0.02

    register.php for WoltLab Burning Board (wbboard) 1.1.1 uses a small number of random values for the "code" parameter that is provided to action.php to approve a new registration, along with predictable new user ID's, which allows remote attackers to hijack new user accounts via…

Page 2 of 2