Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

YABB SE Reminder.PHP SQL Injection Vulnerability

It has been reported that a problem exists in the Reminder.php script distributed as part of YaBB SE. Due to insufficient sanitizing of input, it is possible for a remote user to inject arbitrary SQL into the database used by YaBB SE that could be used to reset or change the password of a user.







 

Privacy Statement
Copyright 2009, SecurityFocus