VendorsIkonboard.comikonboard3.1.2a
Vulnerabilities

Ikonboard.com Ikonboard 3.1.2a

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2003-0770
FUNC.pm in IkonBoard 3.1.2a and earlier, including 3.1.1, does not properly cleanse the "lang" cookie when it contains illegal characters, which allows remote attackers to execute arbitrary code when the cookie is inserted into a Perl "eval" statement.
Published 2003-09-12 · Modified
7.52 PoCEPSS 0.111
CVE-2004-1406
SQL injection vulnerability in ikonboard.cgi in Ikonboard 3.1.0 through 3.1.3 allows remote attackers to inject arbitrary SQL commands via the (1) st or (2) keywords parameter.
Published 2005-02-12 · Modified
7.51 PoCEPSS 0.024