PoC Index

CVE-2001-1472

MEDIUM 4.6EPSS 2.6%

SQL injection vulnerability in prefs.php in phpBB 1.4.0 and 1.4.1 allows remote authenticated users to execute arbitrary SQL commands and gain administrative access via the viewemail parameter.

CVSS v2.0
4.6 MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
EPSS
2.58% chance of exploitation in the next 30 days, 84th percentile
Published
2005-04-21
Updated
2024-08-08

ExploitDB entries (1)

References

Related