Back
CVE-2005-1642
SQL injection vulnerability in the verify_email function in Woltlab Burning Board 2.x and earlier allows remote attackers to execute arbitrary SQL commands via the $email variable.
Published: May 17, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| woltlab | burning_board | 2.0 |
GitHub Security Advisory GHSA-8v7f-6wmh-fqhr
SQL injection vulnerability in the verify_email function in Woltlab Burning Board 2.x and earlier...
References (12)
- http://archives.neohapsis.com/archives/bugtraq/2005-05/0199.html Exploit, Vendor Advisory
- http://secunia.com/advisories/15395 Vendor Advisory
- http://www.attrition.org/pipermail/vim/2005-May/000047.html
- http://www.gulftech.org/?node=research&article_id=00075-05162005
- http://www.osvdb.org/16575
- http://www.vupen.com/english/advisories/2005/0558
- http://archives.neohapsis.com/archives/bugtraq/2005-05/0199.html Exploit, Vendor Advisory
- http://secunia.com/advisories/15395 Vendor Advisory
- http://www.attrition.org/pipermail/vim/2005-May/000047.html
- http://www.gulftech.org/?node=research&article_id=00075-05162005
- http://www.osvdb.org/16575
- http://www.vupen.com/english/advisories/2005/0558
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
1.28%
Top 32% most likely to be exploited
Threat Score
30.4 / 100
Data Sources
NVD
EPSS
GitHub