Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2006-3275

SQL injection vulnerability in profile.php in YaBB SE 1.5.5 and earlier allows remote attackers to execute SQL commands via a double-encoded user parameter in a viewprofile action.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 68.2%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2006-3275
  • Yabb » Yabb » Version: Any
    cpe:2.3:a:yabb:yabb:*
  • Yabb » Yabb » Version: 1.5.1
    cpe:2.3:a:yabb:yabb:1.5.1
  • Yabb » Yabb » Version: 1.5.2
    cpe:2.3:a:yabb:yabb:1.5.2
  • Yabb » Yabb » Version: 1.5.4
    cpe:2.3:a:yabb:yabb:1.5.4


Contact Us

Shodan ® - All rights reserved