Skip to main content

Vendor/product archive

mercuryboard / mercuryboard CVEs

Beta · best-effort

8 CVEs tagged to mercuryboard / mercuryboard0 Critical, 3 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2008-6632

Published Apr 7, 2009

SQL injection vulnerability in func/login.php in MercuryBoard 1.1.5 and earlier allows remote attackers to execute arbitrary SQL commands via the User-Agent HTTP header ($_SERVER[…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-0460

Published May 2, 2005

index.php in MercuryBoard 1.0.x and 1.1.x allows remote attackers to obtain sensitive information by setting the debug parameter.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-0662

Published May 2, 2005

Cross-site scripting (XSS) vulnerability in index.php for MercuryBoard 1.1.2 allows remote attackers to inject arbitrary web script or HTML via the Avatar field.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-0663

Published May 2, 2005

SQL injection vulnerability in index.php for MercuryBoard 1.1.2 allows remote attackers to inject arbitrary SQL commands via the f parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-0414

Published Apr 27, 2005

SQL injection vulnerability in post.php for MercuryBoard 1.1.1 allows remote attackers to execute arbitrary SQL commands via a reply post action for index.php with (1) the t param…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-0462

Published Feb 17, 2005

Cross-site scripting (XSS) vulnerability in MercuryBoard 1.0.x and 1.1.x allows remote attackers to inject arbitrary HTML and web script via the f parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-0306

Published Jan 25, 2005

MercuryBoard 1.1.1 allows remote attackers to gain sensitive information via an HTTP request with the n parameter set to 0, which causes a divide-by-zero error and reveals the pat…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-0307

Published Jan 25, 2005

Multiple cross-site scripting (XSS) vulnerabilities in index.php in MercuryBoard 1.1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) s, (2) l, (3) a, (…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1