Punbb CVE-2006-5736 SQL-Injection Vulnerability

Punbb is prone to a sql-injection vulnerability. SQL injection vulnerability in search.php in PunBB before 1.2.14, when the PHP installation is vulnerable to CVE-2006-3017, allows remote attackers to execute arbitrary SQL commands via the result_list array parameter, which is not initialized.


 

Privacy Statement
Copyright 2010, SecurityFocus