Back

CVE-2005-3326

SQL injection vulnerability in usercp.php in MyBulletinBoard (MyBB) allows remote attackers to execute arbitrary SQL commands via the awayday parameter.

Published: Oct 27, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (2)

Vendor Product Version
mybulletinboard mybulletinboard 1.0_pr2
mybulletinboard mybulletinboard rc4

GitHub Security Advisory GHSA-4jp9-m29w-rpw2

SQL injection vulnerability in usercp.php in MyBulletinBoard (MyBB) allows remote attackers to...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.42%

Top 17% most likely to be exploited

Threat Score 30.7 / 100

Data Sources

NVD EPSS GitHub