CVE-2005-0569 – PunBB 3.0/3.1 - Multiple Remote Input Validation Vulnerabilities
https://notcve.org/view.php?id=CVE-2005-0569
Multiple SQL injection vulnerabilities in PunBB 1.2.1 allow remote attackers to execute arbitrary SQL commands via the (1) language parameter to register.php, (2) change email feature in profile.php, (3) posts or (4) topics parameter to moderate.php. • https://www.exploit-db.com/exploits/25160 http://marc.info/?l=bugtraq&m=110927754230666&w=2 http://secunia.com/advisories/14394 http://secunia.com/advisories/14538 http://www.punbb.org/changelogs/1.2.1_to_1.2.2.txt http://www.securityfocus.com/bid/12652 https://exchange.xforce.ibmcloud.com/vulnerabilities/19473 •
CVE-2005-0571
https://notcve.org/view.php?id=CVE-2005-0571
admin_loader.php in PunBB 1.2.1 allows remote attackers to read arbitrary files via the plugin parameter. • http://marc.info/?l=bugtraq&m=110927754230666&w=2 http://secunia.com/advisories/14394 http://www.punbb.org/changelogs/1.2.1_to_1.2.2.txt http://www.punbb.org/download/patch/punbb-1.2.1_to_1.2.2.patch https://exchange.xforce.ibmcloud.com/vulnerabilities/19478 •
CVE-2005-0570
https://notcve.org/view.php?id=CVE-2005-0570
profile.php in PunBB 1.2.1 allows remote attackers to cause a denial of service (account lockout) by setting the user's password to NULL. • http://marc.info/?l=bugtraq&m=110927754230666&w=2 http://secunia.com/advisories/14394 http://www.securityfocus.com/bid/12652 https://exchange.xforce.ibmcloud.com/vulnerabilities/19483 •