← Back

CVE-2006-3797

nvd nist
Published: Jul 24, 2006Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

SQL injection vulnerability in DeluxeBB 1.07 and earlier allows remote attackers to bypass authentication, spoof users, and modify settings via the (1) memberpw and (2) membercookie cookies.

Affected (3)

Products: Deluxebb: Deluxebb
1 product
Deluxebb
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Deluxebb
Version 1.05
Version 1.06
Version 1.07

Timeline

No history available yet.