CVE

Id
18171  
CVE No.
CVE-2006-2067  
Status
Candidate  
Description
SQL injection vulnerability in vb_board_functions.php in MKPortal 1.1, as used with vBulletin 3.5.4 and earlier, allows remote attackers to execute arbitrary SQL commands via the userid parameter.  
Phase
Assigned (20060426)  
Votes
None (candidate not yet proposed)  
Comments