This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Interactivephp First view 2005-06-13
Product Fusionbb Last view 2005-06-16
Version Type Application
Update  
Edition  
Language  
Sofware Edition  
Target Software  
Target Hardware  
Other  

Activity : Overall

COMMON PLATFORM ENUMERATION: Repartition per Version

CPE Name Affected CVE
cpe:2.3:a:interactivephp:fusionbb:11_beta:*:*:*:*:*:*:* 2

Related : CVE

  Date Alert Description
7.5 2005-06-16 CVE-2005-1971

Directory traversal vulnerability in InteractivePHP FusionBB .11 Beta and earlier allows remote attackers to include arbitrary local files via ".." sequences in the language parameter.

7.5 2005-06-13 CVE-2005-1972

Multiple SQL injection vulnerabilities in InteractivePHP FusionBB .11 Beta and earlier allow remote attackers to execute arbitrary SQL commands via (1) the username, which is not properly handled by the insertUser function, or (2) the bb_session_id value in a cookie.

CAPEC : Common Attack Pattern Enumeration & Classification

id Name
CAPEC-193 PHP Remote File Inclusion

Open Source Vulnerability Database (OSVDB)

id Description
17433 FusionBB Cookie Data Traversal Arbitrary File Inclusion
17432 FusionBB Cookie bb_session_id Parameter SQL Injection