CVE-2005-1051 – PunBB 1.2.4 - 'id' SQL Injection
https://notcve.org/view.php?id=CVE-2005-1051
SQL injection vulnerability in profile.php in PunBB 1.2.4 allows remote authenticated users to execute arbitrary SQL commands via the id parameter in a change_email action. • https://www.exploit-db.com/exploits/928 http://marc.info/?l=bugtraq&m=111306207306155&w=2 http://secunia.com/advisories/14882 http://www.securityfocus.com/bid/13071 •
CVE-2005-1072
https://notcve.org/view.php?id=CVE-2005-1072
Cross-site scripting (XSS) vulnerability in PunBB before 1.2.5 allows remote attackers to inject arbitrary web script or HTML. • http://secunia.com/advisories/14882 http://www.punbb.org •
CVE-2005-0818 – PunBB 1.2.3 - Multiple HTML Injection Vulnerabilities
https://notcve.org/view.php?id=CVE-2005-0818
Cross-site scripting (XSS) vulnerability in PunBB 1.2.3 allows remote attackers to inject arbitrary web script or HTML via the (1) email or (2) Jabber parameters. • https://www.exploit-db.com/exploits/25230 http://securitytracker.com/id?1013446 https://exchange.xforce.ibmcloud.com/vulnerabilities/19725 •