1 results (0.011 seconds)

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 3

SQL injection vulnerability in userbarsettings.php in the Userbar plugin 2.2 for MyBB Forum allows remote attackers to execute arbitrary SQL commands via the image2 parameter. Vulnerabilidad de inyección SQL en userbarsettings.php en el complemento Userbar v2.2 para MyBB Forum permite a atacantes remotos ejecutar comandos SQL de su elección a través del parámetro image2. • https://www.exploit-db.com/exploits/17962 http://www.exploit-db.com/exploits/17962 http://www.securityfocus.com/bid/50049 https://exchange.xforce.ibmcloud.com/vulnerabilities/70474 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •