Back

CVE-2005-0284

SQL injection vulnerability in addentry.php in Woltlab Burning Book 1.0 Gold, 1.1.1e, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the user-agent parameter.

Published: Jan 10, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (2)

Vendor Product Version
woltlab burning_book 1.0_gold
woltlab burning_book 1.1.1e

GitHub Security Advisory GHSA-wx2j-r584-v9qv

SQL injection vulnerability in addentry.php in Woltlab Burning Book 1.0 Gold, 1.1.1e, and...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.11%

Top 37% most likely to be exploited

Threat Score 30.3 / 100

Data Sources

NVD EPSS GitHub