HTTP: Venom Board Post.PHP3 SQL Injection

This signature detects attempts to exploit a known vulnerability in Venom Board. It is due to insufficient validation of user-supplied input. An attacker can exploit this issue by manipulating the SQL query logic to carry out unauthorized actions on the underlying database.

Extended Description

Venom Board is prone to multiple SQL injection vulnerabilities. These issues are due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query. Successful exploitation could result in a compromise of the application, disclosure or modification of data, or may permit an attacker to exploit vulnerabilities in the underlying database implementation.

Affected Products

Venom_board venom_board

References

BugTraq: 16176

CVE: CVE-2006-0160

Short Name
HTTP:SQL:INJ:VENOM-BOARD
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Board CVE-2006-0160 Injection Post.PHP3 SQL Venom bid:16176
Release Date
05/08/2013
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Venom_board

CVSS Score

7.5

Found a potential security threat?