Summary
The remote web server contains a PHP script that is affected by a SQL injection flaw.
Description :
The remote host is running WowBB, a web-based forum written in PHP.
The remote version of this software is vulnerable to SQL injection attacks through the script 'view_user.php'. A malicious user can exploit this issue to manipulate database queries, resulting in disclosure of sensitive information, attacks against the underlying database, and the like.
Solution
Unknown at this time.
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2005-1554 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities