Back

CVE-2003-1530

SQL injection vulnerability in privmsg.php in phpBB 2.0.3 and earlier allows remote attackers to execute arbitrary SQL commands via the mark[] parameter.

Published: Dec 31, 2003 Modified: Jun 16, 2026
CWE-89

CVSS Metrics

Affected Products (1)

Vendor Product Version
phpbb phpbb 2.0.3

GitHub Security Advisory GHSA-p77j-p7j8-qhwp

SQL injection vulnerability in privmsg.php in phpBB 2.0.3 and earlier allows remote attackers to...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.06%

Top 38% most likely to be exploited

Threat Score 30.3 / 100

Data Sources

NVD EPSS GitHub