Back

CVE-2002-1505

SQL injection vulnerability in board.php for WoltLab Burning Board (wBB) 2.0 RC 1 and earlier allows remote attackers to modify the database and possibly gain privileges via the boardid parameter.

Published: Apr 2, 2003 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (4)

Vendor Product Version
woltlab burning_board *
woltlab burning_board 2.0_beta_3
woltlab burning_board 2.0_beta_4
woltlab burning_board 2.0_beta_5

GitHub Security Advisory GHSA-v67r-p67m-4f23

SQL injection vulnerability in board.php for WoltLab Burning Board (wBB) 2.0 RC 1 and earlier...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.42%

Top 17% most likely to be exploited

Threat Score 30.7 / 100

Data Sources

NVD EPSS GitHub