nextbbs
Web & CMS Pluginscommercial
Top products
Latest CVEs
The 3 most recently published vulnerabilities affecting nextbbs.
- CVE-2012-1602user.php in NextBBS 0.6 allows remote attackers to bypass authentication and gain administrator access by setting the userkey cookie to 1.7.5
- CVE-2012-1604Cross-site scripting (XSS) vulnerability in NextBBS 0.6 allows remote attackers to inject arbitrary web script or HTML via the do parameter to index.php.4.3
- CVE-2012-1603Multiple SQL injection vulnerabilities in ajaxserver.php in NextBBS 0.6 allow remote attackers to execute arbitrary SQL commands via the (1) curstr parameter in the findUsers function, (2) id param...7.5