CVE-2006-3797

Publication date

2006-07-21 21:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in DeluxeBB 1.07 and earlier allows remote attackers to bypass authentication, spoof users, and modify settings via the (1) memberpw and (2) membercookie cookies.