CVE-2008-2492

Publication date

2008-05-28 15:00:00

Family

mitre

State

PUBLISHED

Description

Multiple SQL injection vulnerabilities in Campus Bulletin Board 3.4 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to post3/view.asp and the (2) review parameter to post3/book.asp.