Back
CVE-2005-2575
SQL injection vulnerability in u2u.inc.php in XMB Forum 1.9.1 allows remote attackers to execute arbitrary SQL commands via certain values that are inserted into the $in variable.
Published: Aug 16, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| xmb_forum | xmb | 1.9.1 |
GitHub Security Advisory GHSA-9w3m-xjqc-g792
SQL injection vulnerability in u2u.inc.php in XMB Forum 1.9.1 allows remote attackers to execute...
References (6)
- http://marc.info/?l=bugtraq&m=112361545228809&w=2
- http://www.securityfocus.com/bid/14523
- https://docs.xmbforum2.com/index.php?title=Security_Issue_History
- http://marc.info/?l=bugtraq&m=112361545228809&w=2
- http://www.securityfocus.com/bid/14523
- https://docs.xmbforum2.com/index.php?title=Security_Issue_History
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
1.99%
Top 21% most likely to be exploited
Threat Score
30.6 / 100
Data Sources
NVD
EPSS
GitHub