Security Advisory

CVE-2009-3052

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2009-09-03 17:00:00
Last updated 2024-08-07 06:14:55
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SQL injection vulnerability in root/includes/prime_quick_style.php in the Prime Quick Style addon before 1.2.3 for phpBB 3 allows remote authenticated users to execute arbitrary SQL commands via the prime_quick_style parameter to ucp.php.