cve/2007/CVE-2007-2626.md
2024-05-26 14:27:05 +02:00

756 B

CVE-2007-2626

Description

** DISPUTED ** SQL injection vulnerability in admin.php in SchoolBoard allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters. NOTE: CVE disputes this issue, because 'username' does not exist, and the password is not used in any queries.

POC

Reference

Github

No PoCs found on GitHub currently.