RSS   Vulnerabilities for 'Lokwabb'   RSS

2002-12-31
 
CVE-2002-1880

 

 
LokwaBB 1.2.2 allows remote attackers to read arbitrary messages by modifying the pmid parameter to pm.php.

 
 
CVE-2002-1879

 

 
SQL injection vulnerability in LokwaBB 1.2.2 allows remote attackers to execute arbitrary SQL commands via the (1) member parameter to member.php or (2) loser parameter to misc.php.

 


Copyright 2024, cxsecurity.com

 

Back to Top