CVE
- Id
- 12760
- CVE No.
- CVE-2005-1554
- Status
- Candidate
- Description
- SQL injection vulnerability in view_user.php in WowBB 1.6, 1.61, and 1.62 allows remote attackers to execute arbitrary SQL commands via the sort_by parameter.
- Phase
- Assigned (20050514)
- Votes
- REVIEWING(1) Christey
- Comments
- Christey> The view_user.php/sort_by vector is covered by several CVEs. | Need to figure out how to handle this.