CVE

Id
39665  
CVE No.
CVE-2009-2230  
Status
Candidate  
Description
SQL injection vulnerability in inc/datahandlers/user.php in MyBB (aka MyBulletinBoard) before 1.4.7 allows remote authenticated users to execute arbitrary SQL commands via the birthdayprivacy parameter.  
Phase
Assigned (20090626)  
Votes
None (candidate not yet proposed)  
Comments