Back

CVE-2006-0638

SQL injection vulnerability in moderation.php in MyBB (aka MyBulletinBoard) 1.0.3 allows remote authenticated users, with certain privileges for moderating and merging posts, to execute arbitrary SQL commands via the posts parameter.

Published: Feb 10, 2006 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
mybulletinboard mybulletinboard 1.0.3

GitHub Security Advisory GHSA-7fmv-6c6f-qf7m

SQL injection vulnerability in moderation.php in MyBB (aka MyBulletinBoard) 1.0.3 allows remote...

Risk Scores

CVSS Score 6.5 / 10
EPSS Score 1.24%

Top 33% most likely to be exploited

Threat Score 26.4 / 100

Data Sources

NVD EPSS GitHub